Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 31-03-2021 Ran by benoi (administrator) on DESKTOP-O2F9JKL (03-04-2021 15:18:56) Running from D:\Bureau Loaded Profiles: benoi Platform: Windows 10 Pro Version 20H2 19042.867 (X64) Language: French (France) -> English (United Kingdom) Default browser: Chrome Boot Mode: Normal ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (Adobe Inc. -> Adobe Inc) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\IPCBox\AdobeIPCBroker.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\protectedservice.exe (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\VPN\Avira.VpnService.exe (Dassault Systemes SolidWorks Corp. -> Dassault Systèmes) C:\Program Files\SOLIDWORKS Corp\SOLIDWORKS Visualize\SWVisualize.Queue.Server.exe (Discord Inc. -> Discord Inc.) C:\Users\benoi\AppData\Local\Discord\app-0.0.309\Discord.exe <6> (Flexera Software LLC -> Flexera Software LLC) C:\Program Files (x86)\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe (Flexera Software LLC -> Flexera Software LLC) C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <37> (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.72\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.72\GoogleCrashHandler64.exe (Hewlett-Packard Company -> Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe (ICEpower a/s -> ICEpower) C:\Windows\System32\ICEsoundService64.exe (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_b8e01d9e8716d2a7\igfxCUIService.exe (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_b8e01d9e8716d2a7\igfxEM.exe (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_54b736e5be5b50b2\OneApp.IGCC.WinService.exe (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_a086f01cc7be643a\IntelCpHDCPSvc.exe (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_a086f01cc7be643a\IntelCpHeciSvc.exe (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iaahcic.inf_amd64_120314e52c04567c\RstMwService.exe (Kaspersky Lab JSC -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 21.3\avp.exe (Kaspersky Lab JSC -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 21.3\avpui.exe (Kaspersky Lab JSC -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 21.3\plugins_nms.exe (Kaspersky Lab JSC -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.3\ksde.exe (Kaspersky Lab JSC -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.3\ksdeui.exe (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub.exe <3> (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_agent.exe (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe (LogMeIn, Inc. -> LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe (LogMeIn, Inc. -> LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (Mentor Graphics Corporation -> Mentor Graphics Corporation) C:\Program Files\SOLIDWORKS Corp\SOLIDWORKS Flow Simulation\binCFW\dispatcher.exe (Mentor Graphics Corporation -> Mentor Graphics Corporation) C:\Program Files\SOLIDWORKS Corp\SOLIDWORKS Flow Simulation\binCFW\remotesolverdispatcherservice.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (Microsoft Corporation -> Microsoft Corporation) C:\Users\benoi\AppData\Local\Microsoft\OneDrive\OneDrive.exe <2> (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2101.10.0_x64__8wekyb3d8bbwe\Calculator.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12101.1001.14.0_x64__8wekyb3d8bbwe\WinStore.App.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\consent.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe (Node.js Foundation -> Node.js) C:\Program Files\Adobe\Adobe Creative Cloud Experience\libs\node.exe (NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2> (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <2> (Oculus VR, LLC -> Facebook Technologies, LLC) C:\Program Files\Oculus\Support\oculus-runtime\OVRRedir.exe (Oculus VR, LLC -> Facebook Technologies, LLC) C:\Program Files\Oculus\Support\oculus-runtime\OVRServer_x64.exe (Oculus VR, LLC -> Facebook Technologies, LLC) C:\Program Files\Oculus\Support\oculus-runtime\OVRServiceLauncher.exe (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Pango Inc. -> Pango Inc.) C:\Program Files (x86)\Hotspot Shield\10.9.14\bin\cmw_srv.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Riot Games, Inc. -> Riot Games, Inc.) C:\Program Files\Riot Vanguard\vgtray.exe (Trace Software International -> ) C:\Program Files\SOLIDWORKS Corp\SOLIDWORKS Electrical\server\EwServer.exe (TunnelBear Inc -> TunnelBear) C:\Program Files (x86)\TunnelBear\TunnelBear.Maintenance.exe (Virtual Desktop, Inc. -> Virtual Desktop, Inc.) C:\Program Files\Virtual Desktop\VirtualDesktop.Service.exe (Wacom Co., Ltd. -> Wacom Co. Ltd.) C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe (Wacom Co., Ltd. -> Wacom Co. Ltd.) C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe (Wacom Co., Ltd. -> Wacom Co. Ltd.) C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe (Wacom Co., Ltd. -> Wacom Co. Ltd.) C:\Program Files\Tablet\Wacom\WTabletServicePro.exe (Wacom Technology Corp. -> Wacom Technology) C:\Program Files\Tablet\Wacom\WacomHost.exe (Wondershare Technology Co.,Ltd -> Wondershare) C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe ==================== Registry (Whitelisted) =================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9277520 2020-05-26] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [Riot Vanguard] => C:\Program Files\Riot Vanguard\vgtray.exe [353400 2021-03-26] (Riot Games, Inc. -> Riot Games, Inc.) HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3412680 2021-02-17] (Adobe Inc. -> Adobe Systems, Incorporated) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKLM\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe HKLM\...\Run: [WSVCUUpdateHelper.exe] => C:\Program Files\Wondershare\Wondershare UniConverter\WSVCUUpdateHelper.exe HKLM-x32\...\Run: [Avira SystrayStartTrigger] => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [705728 2020-11-20] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [779448 2021-03-03] (Adobe Inc. -> Adobe Inc.) HKLM-x32\...\Run: [Adobe CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2021-02-06] (Adobe Inc. -> ) HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Acrotray.exe [5237416 2021-03-06] (Adobe Inc. -> Adobe Systems Inc.) HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5890504 2019-04-02] (LogMeIn, Inc. -> LogMeIn Inc.) HKLM-x32\...\Run: [Discord] => C:\ProgramData\SquirrelMachineInstalls\Discord.exe [62636856 2020-10-24] (Discord Inc. -> Discord Inc.) HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard Company -> Hewlett-Packard) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [706680 2020-12-09] (Oracle America, Inc. -> Oracle Corporation) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2133216 2017-03-23] (Wondershare Technology Co.,Ltd -> Wondershare) HKU\S-1-5-21-2862999081-2136887877-1863393634-1001\...\Run: [Discord] => C:\Users\benoi\AppData\Local\Discord\Update.exe [1512760 2020-12-03] (Discord Inc. -> GitHub) HKU\S-1-5-21-2862999081-2136887877-1863393634-1001\...\Run: [Steam] => D:\Programmes\Steam\steam.exe [4087528 2021-03-23] (Valve -> Valve Corporation) HKU\S-1-5-21-2862999081-2136887877-1863393634-1001\...\Run: [LGHUB] => C:\Program Files\LGHUB\lghub.exe [123792288 2021-03-27] (Logitech Inc -> Logitech, Inc.) HKU\S-1-5-21-2862999081-2136887877-1863393634-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\benoi\AppData\Local\Microsoft\Teams\Update.exe [2453704 2021-03-25] (Microsoft 3rd Party Application Component -> Microsoft Corporation) HKU\S-1-5-21-2862999081-2136887877-1863393634-1001\...\Run: [Spotify] => C:\Users\benoi\AppData\Roaming\Spotify\Spotify.exe [23929928 2021-03-26] (Spotify AB -> Spotify Ltd) HKU\S-1-5-21-2862999081-2136887877-1863393634-1001\...\Run: [EpicGamesLauncher] => D:\Programmes\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [32898104 2021-02-24] (Epic Games Inc. -> Epic Games, Inc.) HKU\S-1-5-21-2862999081-2136887877-1863393634-1001\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [5536424 2021-03-06] (Adobe Inc. -> Adobe Systems Incorporated) HKU\S-1-5-21-2862999081-2136887877-1863393634-1001\...\Run: [HP Officejet Pro X576dw MFP (NET)] => C:\Program Files\HP\HP Officejet Pro X576dw MFP\Bin\ScanToPCActivationApp.exe [3487240 2014-03-06] (Hewlett Packard -> Hewlett-Packard Co.) HKU\S-1-5-21-2862999081-2136887877-1863393634-1001\...\Run: [Overwolf] => C:\Program Files (x86)\Overwolf\OverwolfLauncher.exe [1747288 2021-03-18] (Overwolf Ltd -> Overwolf Ltd.) HKU\S-1-5-21-2862999081-2136887877-1863393634-1001\...\Run: [Snap Camera] => C:\Program Files\Snap Inc\Snap Camera\Snap Camera.exe [67068448 2020-12-04] (Snapchat Inc. (Snap Inc.) -> Snap Inc) HKU\S-1-5-21-2862999081-2136887877-1863393634-1001\...\Run: [Voicemod] => C:\Program Files\Voicemod Desktop\VoicemodDesktop.exe [5682320 2021-02-25] (Voicemod Sociedad Limitada -> Voicemod) HKU\S-1-5-21-2862999081-2136887877-1863393634-1001\...\Run: [electron.app.Guilded] => C:\Users\benoi\AppData\Local\Programs\Guilded\Guilded.exe [104334904 2021-03-21] (GUILDED LLC -> Guilded, Inc.) HKU\S-1-5-21-2862999081-2136887877-1863393634-1001\...\MountPoints2: {e551e9de-03db-11eb-8445-2c4d54d3435e} - "G:\HiSuiteDownLoader.exe" HKLM\...\Windows x64\Print Processors\hpcpp155: C:\Windows\System32\spool\prtprocs\x64\hpcpp155.DLL [596256 2013-08-21] (Hewlett-Packard Company -> Hewlett-Packard Corporation) HKLM\...\Print\Monitors\Adobe PDF Port Monitor: C:\WINDOWS\system32\AdobePDF.dll [65496 2020-10-23] (Adobe Inc. -> Adobe Systems Inc) HKLM\...\Print\Monitors\HP AB11 Status Monitor: C:\WINDOWS\system32\hpinkstsAB11LM.dll [336416 2013-08-27] (Hewlett Packard -> Hewlett-Packard Co.) HKLM\...\Print\Monitors\HP Discovery Port Monitor (HP Officejet Pro X576dw MFP): C:\WINDOWS\system32\HPDiscoPMAB11.dll [763912 2014-03-06] (Hewlett Packard -> Hewlett-Packard Co.) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\89.0.4389.114\Installer\chrmstp.exe [2021-03-31] (Google LLC -> Google LLC) AppInit_DLLs: C:\PROGRA~1\VIRTUA~1\VIRTUA~4.DLL => C:\Program Files\Virtual Desktop Streamer\VirtualDesktop.Injector64.dll [132520 2021-01-09] (Virtual Desktop, Inc. -> Virtual Desktop, Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SOLIDWORKS 2019 Démarrage rapide.lnk [2020-05-26] ShortcutTarget: SOLIDWORKS 2019 Démarrage rapide.lnk -> C:\Windows\Installer\{F261BF5C-81C4-4E81-9ED6-D7EBFA2A9A5B}\NewShortcut2_87EDF6C81D0A4B7B84F42FE0C6A9D608.exe (Flexera Software LLC) [File not signed] ==================== Scheduled Tasks (Whitelisted) ============ (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {0D7CDA44-9340-45E0-BFBB-6EB568318479} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1128424 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation) Task: {20FCD1D5-F0AF-4091-B2FE-55B859E3AC46} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3301176 2020-10-20] (NVIDIA Corporation -> NVIDIA Corporation) Task: {2ECA478F-32FE-4285-B4C9-DC01EA977ABA} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [145800 2021-03-19] (Microsoft Corporation -> Microsoft Corporation) Task: {30A0DE2D-6501-4F59-8454-CF71EF4CF3E2} - System32\Tasks\Driver Booster Update => D:\Programmes\Driver Booster\7.5.0\AutoUpdate.exe [2369808 2020-05-22] (IObit Information Technology -> IObit) Task: {370238C9-B9FD-4DA9-8F5D-66A8072CC1AC} - System32\Tasks\shutdown => C:\Windows\System32\shutdown.exe [28160 2019-12-07] (Microsoft Windows -> Microsoft Corporation) Task: {47F47F76-1E79-410F-9439-9BC46DB09FEA} - System32\Tasks\Avira_Antivirus_Systray => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [2651216 2021-03-19] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) Task: {55043BB0-748E-408D-A852-60E65569691E} - System32\Tasks\Driver Booster SkipUAC (benoi) => D:\Programmes\Driver Booster\7.5.0\DriverBooster.exe [7934736 2020-05-22] (IObit Information Technology -> IObit) Task: {5E52F3A2-5F84-43B9-B2E3-6474DDBEB194} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1128424 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation) Task: {5FCE764F-99FA-4495-83B9-2BCBF3797349} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [5057968 2021-02-21] (Microsoft Corporation -> Microsoft Corporation) Task: {66F067E4-1D4B-4E58-B12A-54D6F60264A6} - System32\Tasks\Driver Booster Scheduler => D:\Programmes\Driver Booster\7.5.0\Scheduler.exe [149776 2020-04-22] (IObit Information Technology -> IObit) Task: {7084F971-081C-41FA-B196-07137584ED77} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [5057968 2021-02-21] (Microsoft Corporation -> Microsoft Corporation) Task: {718529FA-6B02-4788-9BED-8B00A2DFCD91} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [696816 2021-03-26] (Mozilla Corporation -> Mozilla Foundation) Task: {86B41058-BB10-4168-91E5-0BD0ACCF2210} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1557200 2021-01-25] (Adobe Inc. -> Adobe Inc.) Task: {8D399CDA-56BB-4306-B4DD-508F8CE30A15} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1128424 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation) Task: {98897F36-74D6-41A2-9C27-310239C44695} - System32\Tasks\Microsoft\VisualStudio\Updates\BackgroundDownload => C:\Program Files (x86)\Microsoft Visual Studio\Installer\resources\app\ServiceHub\Services\Microsoft.VisualStudio.Setup.Service\BackgroundDownload.exe [65440 2020-06-22] (Microsoft Corporation -> Microsoft) Task: {A08CDF6B-B00A-4EE8-97AA-DEE99B3011DB} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [646456 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation) Task: {A62A89E4-3203-465A-A06B-CDCF8812F6CF} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [907240 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation) Task: {B3257EC1-ED62-4EF1-BC40-23749E61F922} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22763912 2021-02-06] (Microsoft Corporation -> Microsoft Corporation) Task: {B360ACA3-5518-408F-9460-B6DE6DD775EA} - System32\Tasks\HPCustParticipation HP Officejet Pro X576dw MFP => C:\Program Files\HP\HP Officejet Pro X576dw MFP\Bin\HPCustPartic.exe [5745672 2014-03-06] (Hewlett Packard -> Hewlett-Packard Co.) Task: {B6979180-BB7C-4458-B795-82EAE358A3D2} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2020-10-17] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log Task: {BA66B8C2-D4E7-41E1-A41C-85F2A5B26D3E} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1128424 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation) Task: {BBD6379B-4B8A-43F9-9026-09DA0F741475} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [907240 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation) Task: {C363A258-01BB-427F-9B44-9EDCEA40B9A2} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-05-26] (Google LLC -> Google LLC) Task: {C94E22E4-D93A-42FC-B376-AE3504A01D03} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3412680 2021-02-17] (Adobe Inc. -> Adobe Systems, Incorporated) Task: {D7F5E99C-FC2B-41ED-9664-4317A0CF0D34} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\OLicenseHeartbeat.exe [1683328 2021-03-19] (Microsoft Corporation -> Microsoft Corporation) Task: {DC11B8CC-D3E4-4BA9-A464-E70707B70248} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [145800 2021-03-19] (Microsoft Corporation -> Microsoft Corporation) Task: {DC1E5BF6-FCF8-4608-960B-B71FEBF8CD44} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2491736 2021-03-18] (Overwolf Ltd -> Overwolf LTD) Task: {DC3E10DE-3898-4288-B833-8D65585A8645} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2020-10-17] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {E4659C6A-C5B6-4823-954C-04719F7E79A2} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-05-26] (Google LLC -> Google LLC) Task: {E4A6FBB7-A8D8-447C-8F5E-56D34D264FFA} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22763912 2021-02-06] (Microsoft Corporation -> Microsoft Corporation) Task: {F9184D35-7029-4E19-920B-7378C03E3939} - System32\Tasks\npcapwatchdog => C:\Program Files\Npcap\CheckStatus.bat [880 2020-09-25] () [File not signed] (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{27bfa76e-a2ed-413a-951b-5fb9bfa47b54}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{7a701248-242c-426e-b37b-c909cc68b41b}: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{f7c0130c-fe29-44a8-bc02-bb40126d6b37}: [DhcpNameServer] 8.8.8.8 HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION Edge: ======= Edge Profile: C:\Users\benoi\AppData\Local\Microsoft\Edge\User Data\Default [2021-03-13] Edge HKU\S-1-5-21-2862999081-2136887877-1863393634-1001\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [ahkjpbeeocnddjkakilopmfdlnjdpcdm] Edge HKLM-x32\...\Edge\Extension: [ihcjicgdanjaechkgeegckofjjedodee] FireFox: ======== FF DefaultProfile: 0y62dy3t.default FF ProfilePath: C:\Users\benoi\AppData\Roaming\Mozilla\Firefox\Profiles\0y62dy3t.default [2020-08-30] FF ProfilePath: C:\Users\benoi\AppData\Roaming\Mozilla\Firefox\Profiles\fsq1ijku.default-release [2021-03-26] FF Extension: (Screen Recorder) - C:\Users\benoi\AppData\Roaming\Mozilla\Firefox\Profiles\fsq1ijku.default-release\Extensions\screen-recorder@freebusinessapps.xpi [2021-02-03] FF Extension: (uBlock Origin) - C:\Users\benoi\AppData\Roaming\Mozilla\Firefox\Profiles\fsq1ijku.default-release\Extensions\uBlock0@raymondhill.net.xpi [2021-03-17] FF Extension: (Universal Bypass) - C:\Users\benoi\AppData\Roaming\Mozilla\Firefox\Profiles\fsq1ijku.default-release\Extensions\{529b261b-df0b-4e3b-bf42-07b462da0ee8}.xpi [2021-02-10] FF HKLM\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi FF Extension: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi [2020-05-29] FF HKLM\...\Firefox\Extensions: [light_plugin_7571494CE0B94E11BB762B659A4AD71F@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 21.3\FFExt\light_plugin_firefox\addon.xpi => not found FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi FF HKLM-x32\...\Firefox\Extensions: [light_plugin_7571494CE0B94E11BB762B659A4AD71F@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 21.3\FFExt\light_plugin_firefox\addon.xpi => not found FF Plugin: 3ds.com/ComposerPlayerWebPlugin_x86_64 -> C:\PROGRA~1\SOLIDW~1\SOLIDW~3\Bin\NPCOMP~1.DLL [2019-02-27] (Dassault Systemes SE -> Dassault Systemes) FF Plugin: @java.com/DTPlugin,version=11.281.2 -> C:\Program Files\Java\jre1.8.0_281\bin\dtplugin\npDeployJava1.dll [2021-01-31] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.281.2 -> C:\Program Files\Java\jre1.8.0_281\bin\plugin2\npjp2.dll [2021-01-31] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-01-21] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=3.0.10 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.12 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2021-03-03] (Adobe Inc. -> Adobe Systems) FF Plugin-x32: 3ds.com/ComposerPlayerWebPlugin -> C:\PROGRA~1\SOLIDW~1\SOLIDW~3\Bin\x86\NPCOMP~1.DLL [2019-02-27] (Dassault Systemes SE -> Dassault Systemes) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2021-01-21] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2021-01-21] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2021-03-06] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2021-03-03] (Adobe Inc. -> Adobe Systems) Chrome: ======= CHR Profile: C:\Users\benoi\AppData\Local\Google\Chrome\User Data\Default [2021-04-03] CHR Notifications: Default -> hxxps://aternos.org; hxxps://meet.google.com; hxxps://www.chess.com CHR Extension: (Slides) - C:\Users\benoi\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-05-26] CHR Extension: (Kaspersky Protection) - C:\Users\benoi\AppData\Local\Google\Chrome\User Data\Default\Extensions\ahkjpbeeocnddjkakilopmfdlnjdpcdm [2021-04-02] CHR Extension: (Docs) - C:\Users\benoi\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2020-05-26] CHR Extension: (Google Drive) - C:\Users\benoi\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-24] CHR Extension: (WOT: Web of Trust, Évaluation de la réputation de sites Web) - C:\Users\benoi\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp [2021-03-10] CHR Extension: (YouTube) - C:\Users\benoi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-05-26] CHR Extension: (Honey) - C:\Users\benoi\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmnlcjabgnpnenekpadlanbbkooimhnj [2021-03-22] CHR Extension: (uBlock Origin) - C:\Users\benoi\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2021-03-20] CHR Extension: (Tampermonkey) - C:\Users\benoi\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2020-10-18] CHR Extension: (Adobe Acrobat) - C:\Users\benoi\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2021-03-02] CHR Extension: (Dark Reader) - C:\Users\benoi\AppData\Local\Google\Chrome\User Data\Default\Extensions\eimadpbcbfnmbkopoojfekhnkhdbieeh [2021-04-01] CHR Extension: (Sheets) - C:\Users\benoi\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-05-26] CHR Extension: (Postman) - C:\Users\benoi\AppData\Local\Google\Chrome\User Data\Default\Extensions\fhbjgbiflinjbdggehcddcbncdddomop [2020-05-26] CHR Extension: (Bureau à distance Google Chrome) - C:\Users\benoi\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbchcmhmhahfdphkhkmpfmihenigjmpp [2020-05-26] CHR Extension: (Google Docs hors connexion) - C:\Users\benoi\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-03-13] CHR Extension: (Screen Recorder - Enregistreur d'écran) - C:\Users\benoi\AppData\Local\Google\Chrome\User Data\Default\Extensions\hniebljpgcogalllopnjokppmgbhaden [2021-04-01] CHR Extension: (libdoge) - C:\Users\benoi\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifbchccfedjkkhlnffjckaghjdpchhmo [2021-02-19] CHR Extension: (Malwarebytes Browser Guard) - C:\Users\benoi\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2021-03-30] CHR Extension: (Enregistreur d'écran) - C:\Users\benoi\AppData\Local\Google\Chrome\User Data\Default\Extensions\jdopnakmnlnccgpfpmjmdjjohmcdgabp [2021-02-08] CHR Extension: (Web Scraper - Free Web Scraping) - C:\Users\benoi\AppData\Local\Google\Chrome\User Data\Default\Extensions\jnhgnonknehpejjnehehllkliplmbmhn [2020-09-23] CHR Extension: (Reddit Enhancement Suite) - C:\Users\benoi\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbmfpngjjgdllneeigpgjifpgocmfgmb [2021-03-30] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\benoi\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-31] CHR Extension: (Gmail) - C:\Users\benoi\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-23] CHR Extension: (Chrome Media Router) - C:\Users\benoi\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-03-04] CHR Extension: (Screenshot extension) - D:\Bureau [2021-04-03] CHR HKLM\...\Chrome\Extension: [ahkjpbeeocnddjkakilopmfdlnjdpcdm] - hxxps://chrome.google.com/webstore/detail/kaspersky-protection/ahkjpbeeocnddjkakilopmfdlnjdpcdm CHR HKLM-x32\...\Chrome\Extension: [ahkjpbeeocnddjkakilopmfdlnjdpcdm] - hxxps://chrome.google.com/webstore/detail/kaspersky-protection/ahkjpbeeocnddjkakilopmfdlnjdpcdm CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee] ==================== Services (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169672 2021-01-25] (Adobe Inc. -> Adobe Inc.) R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [842424 2021-03-03] (Adobe Inc. -> Adobe Inc.) R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3780296 2021-02-17] (Adobe Inc. -> Adobe Systems, Incorporated) R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3548360 2021-02-17] (Adobe Inc. -> Adobe Systems, Incorporated) R2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [1208432 2021-03-19] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) R2 AntivirProtectedService; C:\Program Files (x86)\Avira\Antivirus\ProtectedService.exe [537472 2021-03-19] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [484904 2021-03-19] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [484904 2021-03-19] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) R2 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [575776 2021-03-19] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [636592 2020-11-20] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) R2 AviraPhantomVPN; C:\Program Files (x86)\Avira\VPN\Avira.VpnService.exe [385568 2021-03-23] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) R2 AVP21.3; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 21.3\avp.exe [384280 2021-02-19] (Kaspersky Lab JSC -> AO Kaspersky Lab) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8646752 2020-07-13] (BattlEye Innovations e.K. -> ) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [8854920 2021-02-06] (Microsoft Corporation -> Microsoft Corporation) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [818304 2021-01-15] (EasyAntiCheat Oy -> Epic Games, Inc) R2 ewserver; C:\Program Files\SOLIDWORKS Corp\SOLIDWORKS Electrical\server\EwServer.exe [191664 2019-02-27] (Trace Software International -> ) S3 FvSvc; C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe [287720 2020-10-19] (NVIDIA Corporation -> NVIDIA) R2 Hamachi2Svc; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [3361736 2019-04-02] (LogMeIn, Inc. -> LogMeIn Inc.) S2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [285192 2020-10-29] (HP Inc. -> HP Inc.) R2 hshld_10.9.14; C:\Program Files (x86)\Hotspot Shield\10.9.14\bin\cmw_srv.exe [223736 2020-11-20] (Pango Inc. -> Pango Inc.) S3 impi_hydra; C:\Program Files\Common Files\SolidWorks Shared\Simulation Worker Agent\hydra_service.exe [924472 2019-02-27] (Intel(R) Software Development Products -> Intel Corporation) S3 klvssbridge64_21.3; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 21.3\x64\vssbridge64.exe [479280 2021-02-19] (Kaspersky Lab JSC -> AO Kaspersky Lab) R2 KSDE5.3; C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.3\ksde.exe [646520 2021-02-19] (Kaspersky Lab JSC -> AO Kaspersky Lab) R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [10545056 2021-03-27] (Logitech Inc -> Logitech, Inc.) R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [419248 2016-05-27] (LogMeIn, Inc. -> LogMeIn, Inc.) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [7456464 2021-01-31] (Malwarebytes Inc -> Malwarebytes) S2 MSSQL$TEW_SQLEXPRESS; C:\ProgramData\SOLIDWORKS Electrical\MSSQL12.TEW_SQLEXPRESS\MSSQL\Binn\sqlservr.exe [372416 2015-04-20] (Microsoft Corporation -> Microsoft Corporation) R2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [50688 2013-05-16] (Hewlett-Packard) [File not signed] S3 OverwolfUpdater; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2491736 2021-03-18] (Overwolf Ltd -> Overwolf LTD) S3 OVRLibraryService; C:\Program Files\Oculus\Support\oculus-librarian\OVRLibraryService.exe [144592 2021-03-31] (Oculus VR, LLC -> Facebook Technologies, LLC) R2 OVRService; C:\Program Files\Oculus\Support\oculus-runtime\OVRServiceLauncher.exe [511696 2021-03-31] (Oculus VR, LLC -> Facebook Technologies, LLC) R2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [66048 2013-05-16] (Hewlett-Packard) [File not signed] R2 RemoteSolverDispatcher; C:\Program Files\SOLIDWORKS Corp\SOLIDWORKS Flow Simulation\binCFW\remotesolverdispatcherservice.exe [263168 2019-02-27] (Mentor Graphics Corporation -> Mentor Graphics Corporation) S3 Rockstar Service; D:\Program Files\RockStart\Launcher\RockstarService.exe [1676696 2021-03-27] (Rockstar Games, Inc. -> Rockstar Games) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5352528 2021-03-11] (Microsoft Windows Publisher -> Microsoft Corporation) S3 SolidWorks Licensing Service; C:\Program Files (x86)\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe [79360 2020-05-26] (SolidWorks) [File not signed] S4 SQLAgent$TEW_SQLEXPRESS; C:\ProgramData\SOLIDWORKS Electrical\MSSQL12.TEW_SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [613056 2015-04-20] (Microsoft Corporation -> Microsoft Corporation) R2 SWVisualize2019.Queue.Server; C:\Program Files\SOLIDWORKS Corp\SOLIDWORKS Visualize\SWVisualize.Queue.Server.exe [27024 2019-02-27] (Dassault Systemes SolidWorks Corp. -> Dassault Systèmes) R2 TunnelBearMaintenance; C:\Program Files (x86)\TunnelBear\TunnelBear.Maintenance.exe [137888 2020-06-05] (TunnelBear Inc -> TunnelBear) S3 Updater; C:\Program Files\Virtual Desktop Streamer\Updater.exe [1122216 2021-01-09] (Virtual Desktop, Inc. -> Virtual Desktop, Inc.) S3 VBoxSDS; C:\Program Files\Oracle\VirtualBox\VBoxSDS.exe [744968 2020-05-14] (Oracle Corporation -> Oracle Corporation) S3 vgc; C:\Program Files\Riot Vanguard\vgc.exe [10359000 2021-03-26] (Riot Games, Inc. -> Riot Games, Inc.) R2 VirtualDesktop.Service.exe; C:\Program Files\Virtual Desktop\VirtualDesktop.Service.exe [1962920 2020-12-01] (Virtual Desktop, Inc. -> Virtual Desktop, Inc.) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.6-0\NisSrv.exe [3304992 2020-05-26] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.6-0\MsMpEng.exe [103376 2020-05-26] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Drivers (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R0 avdevprot; C:\WINDOWS\System32\DRIVERS\avdevprot.sys [78936 2019-06-07] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) S0 avelam; C:\WINDOWS\System32\drivers\avelam.sys [22336 2019-03-20] (Microsoft Windows Early Launch Anti-malware Publisher -> Avira Operations GmbH & Co. KG) R2 avgntflt; C:\WINDOWS\System32\DRIVERS\avgntflt.sys [209744 2021-03-30] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) R1 avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [199312 2021-03-19] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) R1 avkmgr; C:\WINDOWS\system32\DRIVERS\avkmgr.sys [46704 2019-03-20] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) R2 avnetflt; C:\WINDOWS\system32\DRIVERS\avnetflt.sys [89736 2019-03-20] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) R0 avusbflt; C:\WINDOWS\System32\Drivers\avusbflt.sys [45472 2019-03-20] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed] R0 cm_km; C:\WINDOWS\System32\DRIVERS\cm_km.sys [250032 2021-02-19] (Kaspersky Lab JSC -> AO Kaspersky Lab) R3 DroidCam; C:\WINDOWS\System32\drivers\droidcam.sys [32240 2020-04-10] (Microsoft Windows Hardware Compatibility Publisher -> Dev47Apps) R3 DroidCamVideo; C:\WINDOWS\System32\drivers\droidcamvideo.sys [33784 2020-10-04] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) S3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2018-09-26] (Disc Soft Ltd -> Disc Soft Ltd) S3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2018-09-26] (Disc Soft Ltd -> Disc Soft Ltd) R3 e2esoft_ivcamaudio_simple; C:\WINDOWS\system32\drivers\iVCamAud.sys [255464 2020-11-04] (Shanghai Yitu Information Technology Co., Ltd. -> e2eSoft) S3 epmntdrv; C:\WINDOWS\system32\epmntdrv.sys [36280 2020-02-23] (CHENGDU YIWO Tech Development Co., Ltd. -> ) R0 EPMVolFl; C:\WINDOWS\System32\drivers\EPMVolFl.sys [30136 2020-02-23] (CHENGDU YIWO Tech Development Co., Ltd. -> Windows (R) Codename Longhorn DDK provider) R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [153312 2021-01-31] (Malwarebytes Corporation -> Malwarebytes) R0 EUDCPEPM; C:\WINDOWS\System32\drivers\EUDCPEPM.sys [85424 2020-02-23] (CHENGDU YIWO Tech Development Co., Ltd. -> CHENGDU YIWO Tech Development Co., Ltd) R1 EUEDKEPM; C:\WINDOWS\system32\drivers\EUEDKEPM.sys [33712 2020-02-23] (CHENGDU YIWO Tech Development Co., Ltd. -> CHENGDU YIWO Tech Development Co., Ltd) R1 HWiNFO32; C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [27552 2020-05-26] (Martin Malik - REALiX -> REALiX(tm)) R3 iVCam; C:\WINDOWS\system32\DRIVERS\iVCam.sys [1090536 2020-11-02] (Shanghai Yitu Information Technology Co., Ltd. -> e2eSoft) R1 klbackupdisk; C:\WINDOWS\system32\DRIVERS\klbackupdisk.sys [110336 2021-02-19] (Kaspersky Lab JSC -> AO Kaspersky Lab) R1 klbackupflt; C:\WINDOWS\System32\DRIVERS\klbackupflt.sys [211704 2021-02-19] (Kaspersky Lab JSC -> AO Kaspersky Lab) R1 kldisk; C:\WINDOWS\system32\DRIVERS\kldisk.sys [126216 2021-02-19] (Kaspersky Lab JSC -> AO Kaspersky Lab) S0 klelam; C:\WINDOWS\System32\DRIVERS\klelam.sys [41656 2021-02-19] (Microsoft Windows Early Launch Anti-malware Publisher -> AO Kaspersky Lab) R1 klflt; C:\WINDOWS\system32\DRIVERS\klflt.sys [514840 2021-02-19] (Kaspersky Lab JSC -> AO Kaspersky Lab) R1 klgse; C:\WINDOWS\System32\DRIVERS\klgse.sys [657176 2021-02-19] (Kaspersky Lab JSC -> AO Kaspersky Lab) R1 klhk; C:\WINDOWS\system32\DRIVERS\klhk.sys [1400584 2021-02-19] (Kaspersky Lab JSC -> AO Kaspersky Lab) R3 klids; C:\ProgramData\Kaspersky Lab\AVP21.3\Bases\klids.sys [245280 2021-04-02] (Kaspersky Lab JSC -> AO Kaspersky Lab) R1 KLIF; C:\WINDOWS\System32\DRIVERS\klif.sys [1042712 2021-02-19] (Kaspersky Lab JSC -> AO Kaspersky Lab) R1 klim6; C:\WINDOWS\system32\DRIVERS\klim6.sys [98040 2021-02-19] (Kaspersky Lab JSC -> AO Kaspersky Lab) R3 klkbdflt; C:\WINDOWS\system32\DRIVERS\klkbdflt.sys [112392 2021-02-19] (Kaspersky Lab JSC -> AO Kaspersky Lab) R3 klmouflt; C:\WINDOWS\system32\DRIVERS\klmouflt.sys [112904 2021-02-19] (Kaspersky Lab JSC -> AO Kaspersky Lab) R1 klpd; C:\WINDOWS\System32\DRIVERS\klpd.sys [85256 2021-02-19] (Kaspersky Lab JSC -> AO Kaspersky Lab) R1 klpnpflt; C:\WINDOWS\system32\DRIVERS\klpnpflt.sys [96008 2021-02-19] (Kaspersky Lab JSC -> AO Kaspersky Lab) R3 kltap; C:\WINDOWS\System32\drivers\kltap.sys [55592 2021-02-19] (AnchorFree Inc -> The OpenVPN Project) R0 klupd_klif_arkmon; C:\WINDOWS\System32\Drivers\klupd_klif_arkmon.sys [257208 2021-04-02] (Kaspersky Lab JSC -> AO Kaspersky Lab) S3 klupd_klif_kimul; C:\WINDOWS\System32\Drivers\klupd_klif_kimul.sys [99152 2021-04-02] (Kaspersky Lab -> AO Kaspersky Lab) R3 klupd_klif_klark; C:\WINDOWS\System32\Drivers\klupd_klif_klark.sys [310232 2021-04-02] (Kaspersky Lab JSC -> AO Kaspersky Lab) R0 klupd_klif_klbg; C:\WINDOWS\System32\Drivers\klupd_klif_klbg.sys [116888 2021-04-02] (Kaspersky Lab JSC -> AO Kaspersky Lab) R3 klupd_klif_mark; C:\WINDOWS\System32\Drivers\klupd_klif_mark.sys [207352 2021-04-02] (Kaspersky Lab JSC -> AO Kaspersky Lab) S4 klwfp; C:\WINDOWS\system32\DRIVERS\klwfp.sys [155912 2021-02-19] (Kaspersky Lab JSC -> AO Kaspersky Lab) R1 klwtp; C:\WINDOWS\system32\DRIVERS\klwtp.sys [327936 2021-02-19] (Kaspersky Lab JSC -> AO Kaspersky Lab) R1 kneps; C:\WINDOWS\system32\DRIVERS\kneps.sys [300808 2021-02-19] (Kaspersky Lab JSC -> AO Kaspersky Lab) S3 LGBusEnum; C:\WINDOWS\system32\drivers\LGBusEnum.sys [37408 2015-06-11] (Microsoft Windows Hardware Compatibility Publisher -> Logitech Inc.) R2 LGHUBTemperatureService; C:\Program Files\LGHUB\logi_core_temp.sys [22864 2021-03-27] (Logitech Inc -> Logitech) S3 LGJoyHidFilter; C:\WINDOWS\system32\drivers\LGJoyHidFilter.sys [57368 2017-10-20] (Logitech Inc -> Logitech Inc.) S3 LGJoyHidLo; C:\WINDOWS\system32\drivers\LGJoyHidLo.sys [47256 2017-10-20] (Logitech Inc -> Logitech Inc.) S3 LGJoyXlCore; C:\WINDOWS\system32\drivers\LGJoyXlCore.sys [68384 2015-06-11] (Microsoft Windows Hardware Compatibility Publisher -> Logitech Inc.) R3 logi_joy_bus_enum; C:\WINDOWS\system32\drivers\logi_joy_bus_enum.sys [37200 2021-03-19] (Logitech Inc -> Logitech) R3 logi_joy_vir_hid; C:\WINDOWS\system32\drivers\logi_joy_vir_hid.sys [25928 2021-03-19] (Logitech Inc -> Logitech) R3 logi_joy_xlcore; C:\WINDOWS\system32\drivers\logi_joy_xlcore.sys [66896 2021-03-19] (Logitech Inc -> Logitech) R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [220616 2021-03-23] (Malwarebytes Inc -> Malwarebytes) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [19912 2021-01-31] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 MBAMFarflt; C:\WINDOWS\System32\DRIVERS\farflt.sys [198248 2021-04-03] (Malwarebytes Inc -> Malwarebytes) R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [77496 2021-04-03] (Malwarebytes Inc -> Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [248992 2021-03-23] (Malwarebytes Inc -> Malwarebytes) R3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [155360 2021-04-03] (Malwarebytes Inc -> Malwarebytes) S3 npcap; C:\WINDOWS\system32\DRIVERS\npcap.sys [74616 2020-09-25] (Insecure.Com LLC -> Insecure.Com LLC.) R3 oculusvad_oculusvad; C:\WINDOWS\System32\drivers\oculusvad.sys [72208 2021-01-20] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) R3 Oculus_ViGEmBus; C:\WINDOWS\System32\drivers\Oculus_ViGEmBus.sys [32856 2021-01-20] (Oculus VR, LLC -> Facebook Inc.) R1 pango_netfilter2; C:\WINDOWS\System32\drivers\pango_netfilter2.sys [94080 2020-11-20] (Pango Inc. -> Pango Inc) S3 PVUSB; C:\WINDOWS\System32\drivers\CESG64.sys [63808 2007-02-19] (CASIO COMPUTER CO.,LTD. -> CASIO COMPUTER CO.,LTD.) S4 RsFx0310; C:\WINDOWS\System32\DRIVERS\RsFx0310.sys [249024 2015-04-20] (Microsoft Corporation -> Microsoft Corporation) R3 SnapCameraVirtualDevice; C:\WINDOWS\System32\drivers\SnapCameraVirtualDevice.sys [2800232 2020-10-12] (Snap Inc. -> Windows (R) Win 7 DDK provider) S3 Sony_Audio; C:\WINDOWS\system32\drivers\Sony_Audio_Driver.sys [181584 2016-02-17] (Sony Corporation -> Sony Corporation) R3 tap-tb-0901; C:\WINDOWS\System32\drivers\tap-tb-0901.sys [38656 2019-04-02] (TunnelBear, Inc. -> The OpenVPN Project) R3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [39920 2019-10-23] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project) R3 VBoxNetAdp; C:\WINDOWS\system32\DRIVERS\VBoxNetAdp6.sys [237824 2020-05-14] (Oracle Corporation -> Oracle Corporation) R1 VBoxNetLwf; C:\WINDOWS\system32\DRIVERS\VBoxNetLwf.sys [247224 2020-05-14] (Oracle Corporation -> Oracle Corporation) R3 vdvad_WaveExtensible; C:\WINDOWS\System32\drivers\vdvad.sys [41072 2020-10-02] (Virtual Desktop, Inc. -> Virtual Desktop) R3 vdvge; C:\WINDOWS\System32\drivers\vdvge.sys [77864 2020-10-02] (Virtual Desktop, Inc. -> Virtual Desktop, Inc.) R1 vgk; C:\Program Files\Riot Vanguard\vgk.sys [6436768 2021-03-25] (Riot Games, Inc. -> Riot Games, Inc.) R3 VOICEMOD_Driver; C:\WINDOWS\system32\drivers\vmdrv.sys [48136 2021-02-25] (Voicemod Sociedad Limitada -> Windows (R) Win 7 DDK provider) R3 WacHidRouterPro; C:\WINDOWS\System32\drivers\wachidrouter.sys [127512 2020-09-18] (WDKTestCert dant,132134237881206156 -> Wacom Technology, Corp.) R3 wacomrouterfilter; C:\WINDOWS\System32\drivers\wacomrouterfilter.sys [28680 2020-09-18] (WDKTestCert dant,132134237881206156 -> Wacom Technology, Corp.) S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [45960 2020-05-26] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [394680 2020-05-26] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [64944 2020-05-26] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== Three months (created) (Whitelisted) ========= (If an entry is included in the fixlist, the file/folder will be moved.) 2021-04-03 15:18 - 2021-04-03 15:19 - 000000000 ____D C:\FRST 2021-04-03 15:17 - 2021-04-03 15:17 - 002298368 _____ (Farbar) C:\Users\benoi\Downloads\FRST64.exe 2021-04-03 15:05 - 2021-04-03 15:16 - 000000000 ____D C:\Users\benoi\AppData\Roaming\ZHP 2021-04-03 15:05 - 2021-04-03 15:05 - 000000000 ____D C:\Users\benoi\AppData\Local\ZHP 2021-04-03 15:04 - 2021-04-03 15:04 - 003467416 _____ (Nicolas Coolman) C:\Users\benoi\Downloads\ZHPSuite.exe 2021-04-03 04:32 - 2021-04-03 04:32 - 000198248 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys 2021-04-03 04:32 - 2021-04-03 04:32 - 000155360 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys 2021-04-03 04:32 - 2021-04-03 04:32 - 000077496 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys 2021-04-02 20:14 - 2021-04-02 20:16 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job 2021-04-02 20:13 - 2021-04-02 20:13 - 000000000 ____D C:\WINDOWS\pss 2021-04-02 19:45 - 2021-04-02 19:45 - 000310232 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_klark.sys 2021-04-02 19:44 - 2021-04-02 19:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky VPN 2021-04-02 19:43 - 2021-04-02 19:44 - 000000000 ____D C:\Program Files\Common Files\AV 2021-04-02 19:43 - 2021-04-02 19:43 - 000257208 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_arkmon.sys 2021-04-02 19:43 - 2021-04-02 19:43 - 000207352 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_mark.sys 2021-04-02 19:43 - 2021-04-02 19:43 - 000116888 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_klbg.sys 2021-04-02 19:43 - 2021-04-02 19:43 - 000099152 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_kimul.sys 2021-04-02 19:42 - 2021-04-02 19:44 - 000000000 ____D C:\ProgramData\Kaspersky Lab 2021-04-02 19:42 - 2021-04-02 19:44 - 000000000 ____D C:\Program Files (x86)\Kaspersky Lab 2021-04-02 19:42 - 2021-04-02 19:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Anti-Virus 2021-04-02 19:42 - 2021-02-19 21:09 - 000110176 _____ (Kaspersky Lab ZAO) C:\WINDOWS\system32\klfphc.dll 2021-04-02 19:42 - 2021-02-19 21:08 - 001042712 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klif.sys 2021-04-02 19:42 - 2021-02-19 21:08 - 000514840 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klflt.sys 2021-04-02 19:39 - 2021-04-02 19:39 - 002757976 _____ (Kaspersky) C:\Users\benoi\Downloads\kav21.3.10.391fr_25769.exe 2021-04-01 20:18 - 2021-04-01 20:20 - 192892344 _____ (Scilab Enterprises ) C:\Users\benoi\Downloads\scilab-6.1.0_x64.exe 2021-03-31 15:46 - 2021-03-31 15:46 - 000095396 _____ C:\Users\benoi\Downloads\Bulletin CIR2_2020-2021_S1.pdf 2021-03-31 15:46 - 2021-03-31 15:46 - 000088502 _____ C:\Users\benoi\Downloads\Bulletin CIR1 Année 2019-2020.pdf 2021-03-31 15:34 - 2021-03-31 15:34 - 000122486 _____ C:\Users\benoi\Downloads\cours_du_3_2_(15h).zip 2021-03-30 18:52 - 2021-03-30 18:52 - 000841467 _____ C:\Users\benoi\Downloads\SKM_367-20121021915280.pdf 2021-03-30 18:52 - 2021-03-30 18:52 - 000841467 _____ C:\Users\benoi\Downloads\SKM_367-20121021915280 (1).pdf 2021-03-28 22:26 - 2021-03-28 22:26 - 002060276 _____ C:\Users\benoi\Downloads\chap9_correction_FULL (1).pdf 2021-03-28 15:27 - 2021-03-28 15:27 - 002298475 _____ C:\Users\benoi\Downloads\surfing-icon-set (1).zip 2021-03-28 14:48 - 2021-04-03 04:33 - 000000000 ____D C:\Users\benoi\AppData\Roaming\Guilded 2021-03-28 14:48 - 2021-03-28 14:48 - 000002279 _____ C:\Users\benoi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Guilded.lnk 2021-03-28 14:48 - 2021-03-28 14:48 - 000000000 ____D C:\Users\benoi\AppData\Local\guilded-updater 2021-03-28 14:46 - 2021-03-28 14:47 - 074266760 _____ (Guilded, Inc.) C:\Users\benoi\Downloads\Guilded-Win_v_f6fc0ae57f646a675b415df779c0d10e.exe 2021-03-28 14:28 - 2021-03-28 14:28 - 002060276 _____ C:\Users\benoi\Downloads\chap9_correction_FULL.pdf 2021-03-28 01:26 - 2021-03-28 01:26 - 002351805 _____ C:\Users\benoi\Downloads\comodo-sans-serif.zip 2021-03-28 01:24 - 2021-03-28 01:24 - 000024306 _____ C:\Users\benoi\Downloads\playball.zip 2021-03-28 01:23 - 2021-03-28 01:23 - 000063464 _____ C:\Users\benoi\Downloads\blenda-script.regular.otf 2021-03-28 01:21 - 2021-03-28 01:21 - 000013712 _____ C:\Users\benoi\Downloads\milestone (1).zip 2021-03-28 01:20 - 2021-03-28 01:20 - 000013712 _____ C:\Users\benoi\Downloads\milestone.zip 2021-03-28 00:46 - 2021-03-28 00:46 - 001684253 _____ C:\Users\benoi\Downloads\206_nature.zip 2021-03-28 00:26 - 2021-03-28 00:26 - 003081172 _____ C:\Users\benoi\Downloads\surfing-icon-set.zip 2021-03-27 20:33 - 2021-03-27 20:33 - 002644643 _____ C:\Users\benoi\Downloads\club_glisse (1).kra 2021-03-27 18:27 - 2021-03-27 18:27 - 000058060 _____ C:\Users\benoi\Downloads\cours_du_6_2_(17h) (5).zip 2021-03-27 18:20 - 2021-03-27 18:20 - 000526152 _____ C:\Users\benoi\Downloads\cours_du_6_2_(17h) (4).zip 2021-03-27 18:15 - 2021-03-27 18:15 - 000000128 _____ C:\Users\benoi\Downloads\cours_du_6_2_(17h) (3).zip 2021-03-27 18:03 - 2021-03-27 18:03 - 000149124 _____ C:\Users\benoi\Downloads\cours_du_6_2_(17h) (1).zip 2021-03-27 18:03 - 2021-03-27 18:03 - 000000126 _____ C:\Users\benoi\Downloads\cours_du_6_2_(17h) (2).zip 2021-03-27 18:02 - 2021-03-27 18:02 - 000087681 _____ C:\Users\benoi\Downloads\cours_du_6_2_(17h).zip 2021-03-27 17:57 - 2021-03-27 17:57 - 000030785 _____ C:\Users\benoi\Downloads\cours_du_6_2_(16h) (2).zip 2021-03-27 17:56 - 2021-03-27 17:56 - 000000128 _____ C:\Users\benoi\Downloads\cours_du_6_2_(16h) (1).zip 2021-03-27 17:53 - 2021-03-27 17:53 - 000008059 _____ C:\Users\benoi\Downloads\reimg-master.zip 2021-03-27 17:35 - 2021-03-27 17:35 - 000388399 _____ C:\Users\benoi\Downloads\message (2).txt 2021-03-27 17:20 - 2021-03-27 17:20 - 001425589 _____ C:\Users\benoi\Downloads\cours_du_6_2_(16h).zip 2021-03-27 17:03 - 2021-03-27 17:03 - 000000000 ___HD C:\adobeTemp 2021-03-27 16:58 - 2021-03-27 16:58 - 000155731 _____ C:\Users\benoi\Downloads\cours_du_6_2_(15h) (7).zip 2021-03-27 16:56 - 2021-03-27 16:56 - 000087785 _____ C:\Users\benoi\Downloads\cours_du_6_2_(15h) (6).zip 2021-03-27 16:55 - 2021-03-27 16:55 - 000089872 _____ C:\Users\benoi\Downloads\cours_du_6_2_(15h) (5).zip 2021-03-27 16:53 - 2021-03-27 16:53 - 000186866 _____ C:\Users\benoi\Downloads\cours_du_6_2_(15h) (4).zip 2021-03-27 16:51 - 2021-03-27 16:51 - 000056543 _____ C:\Users\benoi\Downloads\cours_du_6_2_(15h) (3).zip 2021-03-27 16:46 - 2021-03-27 16:46 - 000066609 _____ C:\Users\benoi\Downloads\cours_du_6_2_(15h) (2).zip 2021-03-27 16:44 - 2021-03-27 16:44 - 000066609 _____ C:\Users\benoi\Downloads\cours_du_6_2_(15h) (1).zip 2021-03-27 16:43 - 2021-03-27 16:43 - 000066609 _____ C:\Users\benoi\Downloads\cours_du_6_2_(15h).zip 2021-03-27 14:13 - 2021-03-27 14:21 - 000000000 ____D C:\Users\benoi\Documents\Rockstar Games 2021-03-27 14:13 - 2021-03-27 14:21 - 000000000 ____D C:\Users\benoi\AppData\Local\Rockstar Games 2021-03-27 14:13 - 2021-03-27 14:13 - 000000000 ____D C:\Users\benoi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rockstar Games 2021-03-27 14:13 - 2021-03-27 14:13 - 000000000 ____D C:\ProgramData\Rockstar Games 2021-03-27 14:11 - 2021-03-27 14:14 - 000000000 ____D C:\Program Files\Rockstar Games 2021-03-27 14:11 - 2021-03-27 14:14 - 000000000 ____D C:\Program Files (x86)\Rockstar Games 2021-03-27 13:59 - 2021-04-01 21:00 - 000000000 ____D C:\Users\benoi\AppData\Roaming\Signal 2021-03-27 13:59 - 2021-03-27 13:59 - 000002403 _____ C:\Users\benoi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Signal.lnk 2021-03-27 13:59 - 2021-03-27 13:59 - 000000000 ____D C:\Users\benoi\AppData\Local\signal-desktop-updater 2021-03-27 13:58 - 2021-03-27 13:59 - 122952872 _____ (Open Whisper Systems) C:\Users\benoi\Downloads\signal-desktop-win-1.40.1.exe 2021-03-27 11:24 - 2021-03-27 11:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logi 2021-03-26 21:40 - 2021-03-26 21:40 - 003348371 _____ C:\Users\benoi\Downloads\cours_du_5_2_(20h) (1).zip 2021-03-26 21:23 - 2021-03-26 21:23 - 001440149 _____ C:\Users\benoi\Downloads\cours_du_5_2_(20h).zip 2021-03-26 20:58 - 2021-03-26 20:58 - 000370588 _____ C:\Users\benoi\Downloads\cours_du_5_2_(19h) (2).zip 2021-03-26 20:57 - 2021-03-26 20:57 - 000702999 _____ C:\Users\benoi\Downloads\cours_du_5_2_(19h) (1).zip 2021-03-26 20:56 - 2021-03-26 20:56 - 001755441 _____ C:\Users\benoi\Downloads\cours_du_5_2_(19h).zip 2021-03-26 20:12 - 2021-03-26 20:12 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2021-03-26 11:22 - 2021-03-26 11:22 - 002523766 _____ C:\Users\benoi\Downloads\1.svg 2021-03-24 15:18 - 2021-03-24 15:18 - 000509174 _____ C:\Users\benoi\Downloads\Test_React_Alternance_2020.07[1].pdf 2021-03-24 12:49 - 2021-03-24 12:49 - 237215863 _____ C:\Users\benoi\Downloads\rec-tab.webm 2021-03-24 09:53 - 2021-03-24 09:53 - 003362478 _____ C:\Users\benoi\Downloads\Grunge-Textures.zip 2021-03-23 14:33 - 2021-03-23 14:33 - 000227935 _____ C:\Users\benoi\Downloads\d2174bf15a0b3aa65a7b421b351cf7eb3dd67fc2-1616502731340.pdf 2021-03-23 14:00 - 2021-03-23 14:00 - 000002249 _____ C:\Users\benoi\Downloads\843d8112-2430-4e73-958b-6a771cbb5191 2021-03-23 12:10 - 2021-03-23 12:10 - 000139333 _____ C:\Users\benoi\Downloads\a671703b7a9b6ddbe1197c4c7f27539f1d42bdef-1616494145178 (1).pdf 2021-03-23 12:09 - 2021-03-23 12:09 - 000139333 _____ C:\Users\benoi\Downloads\a671703b7a9b6ddbe1197c4c7f27539f1d42bdef-1616494145178.pdf 2021-03-23 11:51 - 2021-03-23 11:51 - 000134378 _____ C:\Users\benoi\Downloads\1fa0b71a3eaec5d56e7e17c6f7579904ff5bee22-1616493003749 (2).pdf 2021-03-23 11:50 - 2021-03-23 11:50 - 000134378 _____ C:\Users\benoi\Downloads\1fa0b71a3eaec5d56e7e17c6f7579904ff5bee22-1616493003749.pdf 2021-03-23 11:50 - 2021-03-23 11:50 - 000134378 _____ C:\Users\benoi\Downloads\1fa0b71a3eaec5d56e7e17c6f7579904ff5bee22-1616493003749 (1).pdf 2021-03-23 11:36 - 2021-03-23 11:36 - 000136229 _____ C:\Users\benoi\Downloads\3bc73e5f9f7541975175e61d9dc8b8d722760af5-1616492182715.pdf 2021-03-23 09:53 - 2021-03-23 09:53 - 000000039 _____ C:\Users\benoi\AppData\Local\kritadisplayrc 2021-03-23 09:31 - 2021-03-23 09:31 - 000996274 _____ C:\Users\benoi\Downloads\Sonder - Personal Use.zip 2021-03-23 08:56 - 2021-03-27 22:00 - 000016166 _____ C:\Users\benoi\AppData\Local\kritarc 2021-03-23 08:56 - 2021-03-23 08:56 - 000000000 ____D C:\Users\benoi\AppData\Roaming\krita 2021-03-23 08:56 - 2021-03-23 08:56 - 000000000 ____D C:\Users\benoi\AppData\Local\krita 2021-03-23 08:56 - 2021-03-23 08:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Krita 2021-03-23 08:56 - 2021-03-23 08:56 - 000000000 ____D C:\Program Files\Krita (x64) 2021-03-23 08:50 - 2021-03-23 08:50 - 001151834 _____ C:\Users\benoi\Downloads\club_glisse.kra 2021-03-22 21:47 - 2021-03-22 21:47 - 000000022 _____ C:\Users\benoi\Downloads\test (7).zip 2021-03-22 21:26 - 2021-03-22 21:26 - 000222478 _____ C:\Users\benoi\Downloads\test (6).zip 2021-03-22 20:48 - 2021-03-22 20:48 - 000487662 _____ C:\Users\benoi\Downloads\test (5).zip 2021-03-22 20:47 - 2021-03-22 20:47 - 000484298 _____ C:\Users\benoi\Downloads\test (4).zip 2021-03-22 20:36 - 2021-03-22 20:36 - 000473622 _____ C:\Users\benoi\Downloads\test (3).zip 2021-03-22 20:35 - 2021-03-22 20:35 - 000484306 _____ C:\Users\benoi\Downloads\test (2).zip 2021-03-22 20:31 - 2021-03-22 20:31 - 000478658 _____ C:\Users\benoi\Downloads\test (1).zip 2021-03-22 20:08 - 2021-03-22 20:08 - 000000133 _____ C:\Users\benoi\Downloads\test.zip 2021-03-22 20:07 - 2021-03-22 20:07 - 000034992 _____ C:\Users\benoi\Downloads\FileSaver.js-master.zip 2021-03-22 19:57 - 2021-03-22 19:57 - 000055401 _____ C:\Users\benoi\Downloads\jszip-utils-master.zip 2021-03-22 19:44 - 2021-03-22 19:44 - 023038701 _____ C:\Users\benoi\Downloads\Stuk-jszip-v3.5.0-9-g112fcdb.zip 2021-03-22 19:44 - 2021-03-22 19:44 - 000000367 _____ C:\Users\benoi\Downloads\example.zip 2021-03-22 19:27 - 2021-03-22 19:27 - 000715914 _____ C:\Users\benoi\Downloads\zip.js-master.zip 2021-03-22 19:05 - 2021-03-22 19:05 - 000000000 ____D C:\Users\benoi\AppData\Local\SolidDocuments 2021-03-22 18:57 - 2021-03-22 19:20 - 002114770 _____ C:\Users\benoi\Downloads\NDA_Benoît_Lorcy.pdf 2021-03-22 18:30 - 2021-03-22 18:30 - 000000125 _____ C:\Users\benoi\Downloads\screenshot.html 2021-03-22 18:30 - 2021-03-22 18:30 - 000000125 _____ C:\Users\benoi\Downloads\screenshot (1).html 2021-03-22 18:12 - 2021-03-22 18:12 - 000012248 _____ C:\Users\benoi\Downloads\screenshot-chrome-extension-master.zip 2021-03-22 16:51 - 2021-03-22 16:51 - 000119463 _____ C:\Users\benoi\Downloads\b44b7dc21a9f5c763489200532ce90b83a56645d-1616424503868.pdf 2021-03-22 15:50 - 2021-03-22 15:50 - 000203917 _____ C:\Users\benoi\Downloads\chap9_ex7 (1).pdf 2021-03-22 15:48 - 2021-03-22 15:48 - 000203917 _____ C:\Users\benoi\Downloads\chap9_ex7.pdf 2021-03-22 14:55 - 2021-03-22 14:55 - 000068542 _____ C:\Users\benoi\Downloads\53a2206edbb9c4fcd01d5cac8babe3c181cd5907-1616416372731.pdf 2021-03-21 11:55 - 2021-03-21 11:55 - 000538148 _____ C:\Users\benoi\Downloads\quelques-notions-importantes-sur-les-systemes.pdf 2021-03-20 20:29 - 2021-03-20 20:29 - 000003552 _____ C:\WINDOWS\system32\Tasks\shutdown 2021-03-20 18:41 - 2021-03-20 18:41 - 000002493 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Illustrator 2021.lnk 2021-03-20 17:52 - 2021-03-20 17:52 - 001170764 _____ C:\Users\benoi\Downloads\210_nature.zip 2021-03-19 20:26 - 2021-03-19 20:26 - 000066896 _____ (Logitech) C:\WINDOWS\system32\Drivers\logi_joy_xlcore.sys 2021-03-19 20:26 - 2021-03-19 20:26 - 000037200 _____ (Logitech) C:\WINDOWS\system32\Drivers\logi_joy_bus_enum.sys 2021-03-19 20:26 - 2021-03-19 20:26 - 000025928 _____ (Logitech) C:\WINDOWS\system32\Drivers\logi_joy_vir_hid.sys 2021-03-17 12:21 - 2021-03-17 12:21 - 000181398 _____ C:\Users\benoi\Downloads\f6c878d72f656cd45c95c8fde8f5840d323d358e-1615976458992.pdf 2021-03-17 11:58 - 2021-03-17 11:58 - 000068542 _____ C:\Users\benoi\Downloads\cours_chap9_reduction_dendomorphisme.pdf 2021-03-16 15:42 - 2021-03-16 15:42 - 000148603 _____ C:\Users\benoi\Downloads\OscillateurExo2.pdf 2021-03-16 15:15 - 2021-03-16 15:15 - 000305561 _____ C:\Users\benoi\Downloads\OscillateurExo1.pdf 2021-03-16 14:35 - 2021-03-16 14:35 - 000383803 _____ C:\Users\benoi\Downloads\OscillateurCour.pdf 2021-03-15 16:50 - 2021-03-15 16:50 - 000377161 _____ C:\Users\benoi\Downloads\c6759c923a9c1a2e05924c0f43c5b3b98c786a42-1615819802019.pdf 2021-03-15 14:51 - 2021-03-15 14:51 - 001574470 _____ C:\Users\benoi\Downloads\rec-tab (9).webm 2021-03-15 14:39 - 2021-03-15 14:39 - 001131998 _____ C:\Users\benoi\Downloads\ExerciceFiltreActif_1_Corrige2.pdf 2021-03-15 14:39 - 2021-03-15 14:39 - 000479068 _____ C:\Users\benoi\Downloads\ex_filtre_actif_2.pdf 2021-03-15 14:39 - 2021-03-15 14:39 - 000121161 _____ C:\Users\benoi\Downloads\ex_TD2_2.pdf 2021-03-15 14:39 - 2021-03-15 14:39 - 000107067 _____ C:\Users\benoi\Downloads\ex_TD2_1.pdf 2021-03-15 14:38 - 2021-03-15 14:38 - 000490931 _____ C:\Users\benoi\Downloads\ex_filtre_actif.pdf 2021-03-15 14:38 - 2021-03-15 14:38 - 000277142 _____ C:\Users\benoi\Downloads\ex_ali_comparateur_1.pdf 2021-03-15 14:38 - 2021-03-15 14:38 - 000274307 _____ C:\Users\benoi\Downloads\ex_3-2_comparateur.pdf 2021-03-15 14:38 - 2021-03-15 14:38 - 000227431 _____ C:\Users\benoi\Downloads\ex_3-3_comparateur.pdf 2021-03-15 14:38 - 2021-03-15 14:38 - 000213896 _____ C:\Users\benoi\Downloads\ex_3-4_comparateur.pdf 2021-03-15 02:45 - 2021-03-15 02:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare 2021-03-15 02:45 - 2021-03-15 02:46 - 008647719 _____ C:\Users\benoi\Downloads\cour phys.mp4 2021-03-15 02:45 - 2021-03-15 02:45 - 000000000 ____D C:\Users\benoi\AppData\Roaming\Wondershare 2021-03-15 02:45 - 2021-03-15 02:45 - 000000000 ____D C:\Users\benoi\AppData\Local\Wondershare 2021-03-15 02:45 - 2021-03-15 02:45 - 000000000 ____D C:\ProgramData\GraphicsType 2021-03-15 02:45 - 2021-03-15 02:45 - 000000000 ____D C:\Program Files (x86)\WondershareUpdate 2021-03-15 02:44 - 2021-03-16 11:20 - 000000000 ____D C:\ProgramData\Wondershare 2021-03-15 02:44 - 2021-03-15 02:48 - 000000000 ____D C:\Program Files\Wondershare 2021-03-15 02:43 - 2021-03-15 02:45 - 000000000 ____D C:\ProgramData\Documents\Wondershare 2021-03-13 22:33 - 2021-03-13 22:40 - 000000000 ____D C:\Users\benoi\AppData\Roaming\5KPlayer 2021-03-13 22:33 - 2021-03-13 22:33 - 000000000 ____D C:\Users\benoi\AppData\Roaming\Digiarty 2021-03-13 22:33 - 2021-03-13 22:33 - 000000000 ____D C:\Program Files (x86)\DearMob 2021-03-13 19:09 - 2021-03-13 19:09 - 000108463 _____ C:\Users\benoi\Downloads\LM_Benoit_LORCY.pdf 2021-03-13 01:28 - 2021-03-13 01:28 - 000024719 _____ C:\Users\benoi\Downloads\ColorTool (1).zip 2021-03-13 01:26 - 2021-03-13 01:26 - 000024719 _____ C:\Users\benoi\Downloads\ColorTool.zip 2021-03-13 01:25 - 2021-03-13 01:25 - 000000000 ____D C:\Users\benoi\AppData\Local\PackageManagement 2021-03-13 01:25 - 2021-03-13 01:25 - 000000000 ____D C:\Program Files\PackageManagement 2021-03-13 01:11 - 2021-03-13 01:11 - 000000000 ____D C:\Users\benoi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Solar-PuTTY 2021-03-13 01:09 - 2021-03-13 01:09 - 000000000 ____D C:\Users\benoi\AppData\Roaming\SolarWinds 2021-03-13 01:09 - 2021-03-13 01:09 - 000000000 ____D C:\Users\benoi\AppData\Roaming\Solar-PuTTY-v4 2021-03-13 00:59 - 2021-03-13 00:59 - 000000000 ____D C:\Users\benoi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SolarWinds 2021-03-13 00:59 - 2021-03-13 00:59 - 000000000 ____D C:\ProgramData\Solarwinds 2021-03-13 00:57 - 2021-03-13 00:57 - 002020448 _____ C:\Users\benoi\Downloads\SolarWinds-FT-Solar-PuTTY.zip 2021-03-12 21:54 - 2021-03-12 21:54 - 000024731 _____ C:\Users\benoi\Downloads\c4w6p4.txt 2021-03-12 17:29 - 2021-03-12 17:29 - 000969820 _____ C:\Users\benoi\Downloads\Cours 12 mars.pdf 2021-03-12 16:51 - 2021-03-12 16:51 - 000001085 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Lightroom Classic.lnk 2021-03-12 11:50 - 2021-03-12 11:50 - 000605699 _____ C:\Users\benoi\Downloads\c08884058560524c835b3aee3d911d57496f4ee1-1615540708404.pdf 2021-03-12 11:32 - 2021-03-12 11:32 - 000693960 _____ C:\Users\benoi\Downloads\d004f8369627e72f709c0afa9361e8520aadcf6b-1615540712443.pdf 2021-03-11 19:16 - 2021-03-11 19:16 - 000048908 _____ C:\Users\benoi\Downloads\Benoit-Lorcy.pdf 2021-03-11 14:23 - 2021-03-11 14:23 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2021-03-11 14:23 - 2021-03-11 14:23 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2021-03-11 14:23 - 2021-03-11 14:23 - 001314128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2021-03-11 14:23 - 2021-03-11 14:23 - 001163776 _____ C:\WINDOWS\system32\MBR2GPT.EXE 2021-03-11 14:23 - 2021-03-11 14:23 - 000611952 _____ C:\WINDOWS\SysWOW64\TextShaping.dll 2021-03-11 14:23 - 2021-03-11 14:23 - 000480256 _____ C:\WINDOWS\system32\AssignedAccessCsp.dll 2021-03-11 14:23 - 2021-03-11 14:23 - 000011359 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2021-03-11 14:22 - 2021-03-11 14:22 - 001822272 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2021-03-11 14:22 - 2021-03-11 14:22 - 001394024 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2021-03-11 14:22 - 2021-03-11 14:22 - 000707016 _____ C:\WINDOWS\system32\TextShaping.dll 2021-03-11 14:22 - 2021-03-11 14:22 - 000231248 _____ C:\WINDOWS\system32\containerdevicemanagement.dll 2021-03-11 14:22 - 2021-03-11 14:22 - 000091136 _____ C:\WINDOWS\system32\Drivers\cimfs.sys 2021-03-11 02:56 - 2021-03-11 02:56 - 000000000 ___HD C:\$Windows.~WS 2021-03-11 02:56 - 2021-03-11 02:56 - 000000000 ____D C:\$WINDOWS.~BT 2021-03-11 02:55 - 2021-03-11 02:55 - 000000731 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows 10 Update Assistant.lnk 2021-03-11 02:55 - 2021-03-11 02:55 - 000000000 ____D C:\Windows10Upgrade 2021-03-10 10:43 - 2021-03-10 10:43 - 000029488 _____ C:\Users\benoi\Downloads\RIB.pdf 2021-03-10 10:38 - 2021-03-10 10:38 - 000085653 _____ C:\Users\benoi\Downloads\attestation_REN0PDTJSR67.pdf 2021-03-10 10:26 - 2021-03-10 10:26 - 000382884 _____ C:\Users\benoi\Downloads\7.2.1.7 Packet Tracer - Configuring Named Standard IPv4 ACLs.pka 2021-03-10 09:27 - 2021-03-10 09:27 - 000226231 _____ C:\Users\benoi\Downloads\7.1.1.4 Packet Tracer - ACL Demonstration.pka 2021-03-09 15:51 - 2021-03-09 15:51 - 000107067 _____ C:\Users\benoi\Downloads\738e4362c61e9c8617af8f05e70a2f9c290f7900-1615297219051.pdf 2021-03-08 14:41 - 2021-03-08 14:41 - 000945942 _____ C:\Users\benoi\Downloads\d8c3c141d4f9a2167bd00efc7dfa15adcac3680d-1615206671856.pdf 2021-03-08 12:37 - 2021-03-08 12:37 - 000103195 _____ C:\Users\benoi\Downloads\LM_LORCY_Benoit (2).pdf 2021-03-08 12:05 - 2021-03-08 12:05 - 000107072 _____ C:\Users\benoi\Downloads\LM_LORCY_Benoit (1).pdf 2021-03-08 11:37 - 2021-03-08 11:37 - 000193405 _____ C:\Users\benoi\Downloads\CV_LORCY_Benoit.pdf 2021-03-08 11:37 - 2021-03-08 11:37 - 000101276 _____ C:\Users\benoi\Downloads\LM_LORCY_Benoit.pdf 2021-03-07 01:14 - 2021-03-07 01:14 - 000000768 _____ C:\Users\benoi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Start Tor Browser.lnk 2021-03-07 01:12 - 2021-03-07 01:13 - 072623808 _____ C:\Users\benoi\Downloads\torbrowser-install-win64-10.0.12_en-US.exe 2021-03-05 01:45 - 2021-03-05 01:45 - 000007600 _____ C:\Users\benoi\AppData\Local\Resmon.ResmonCfg 2021-03-03 16:16 - 2021-03-03 16:16 - 000003101 _____ C:\Users\benoi\Downloads\message.txt 2021-03-03 16:16 - 2021-03-03 16:16 - 000003101 _____ C:\Users\benoi\Downloads\message (1).txt 2021-03-02 23:38 - 2021-03-02 23:38 - 000041490 _____ C:\Users\benoi\Downloads\blocks.json 2021-02-26 16:35 - 2021-02-26 16:35 - 000009486 _____ C:\Users\benoi\Downloads\Pathfinding Benoit lorcy.zip 2021-02-26 11:31 - 2021-02-26 11:31 - 000000000 ____D C:\Users\benoi\benoit 2021-02-25 20:03 - 2021-03-11 18:18 - 000000000 ____D C:\ProgramData\Voicemod 2021-02-25 20:03 - 2021-02-25 20:05 - 000000000 ____D C:\Users\benoi\AppData\Local\Voicemod 2021-02-25 20:03 - 2021-02-25 20:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Voicemod 2021-02-25 20:03 - 2021-02-25 20:03 - 000000000 ____D C:\Program Files\Voicemod Desktop 2021-02-25 20:03 - 2021-02-25 14:08 - 000048136 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\vmdrv.sys 2021-02-24 20:04 - 2021-02-24 20:06 - 000000000 _____ C:\Users\benoi\AppData\Roaming\.OculusDebugToolGUI 2021-02-24 19:46 - 2021-02-24 19:46 - 000000000 ____D C:\Users\benoi\AppData\Local\Home2 2021-02-24 19:41 - 2021-02-24 19:54 - 000000000 ____D C:\Users\benoi\Documents\Dash 2021-02-24 19:41 - 2021-02-24 19:41 - 000000000 ____D C:\Users\benoi\AppData\LocalLow\Oculus 2021-02-22 14:52 - 2021-02-22 14:52 - 000419157 _____ C:\Users\benoi\Downloads\bootstrap-5.0.0-beta2-examples.zip 2021-02-22 12:22 - 2021-02-22 12:22 - 006580583 _____ C:\Users\benoi\Downloads\startbootstrap-sb-admin-2-gh-pages.zip 2021-02-19 21:09 - 2021-02-19 21:09 - 001400584 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klhk.sys 2021-02-19 21:09 - 2021-02-19 21:09 - 000657176 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klgse.sys 2021-02-19 21:09 - 2021-02-19 21:09 - 000327936 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klwtp.sys 2021-02-19 21:09 - 2021-02-19 21:09 - 000300808 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\kneps.sys 2021-02-19 21:09 - 2021-02-19 21:09 - 000155912 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klwfp.sys 2021-02-19 21:09 - 2021-02-19 21:09 - 000096008 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klpnpflt.sys 2021-02-19 21:09 - 2021-02-19 21:09 - 000055592 _____ (The OpenVPN Project) C:\WINDOWS\system32\Drivers\kltap.sys 2021-02-19 21:08 - 2021-02-19 21:08 - 000250032 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\cm_km.sys 2021-02-19 21:08 - 2021-02-19 21:08 - 000211704 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klbackupflt.sys 2021-02-19 21:08 - 2021-02-19 21:08 - 000126216 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\kldisk.sys 2021-02-19 21:08 - 2021-02-19 21:08 - 000112904 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klmouflt.sys 2021-02-19 21:08 - 2021-02-19 21:08 - 000112392 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klkbdflt.sys 2021-02-19 21:08 - 2021-02-19 21:08 - 000110336 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klbackupdisk.sys 2021-02-19 21:08 - 2021-02-19 21:08 - 000098040 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klim6.sys 2021-02-19 21:08 - 2021-02-19 21:08 - 000085256 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klpd.sys 2021-02-19 21:08 - 2021-02-19 21:08 - 000041656 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klelam.sys 2021-02-19 17:10 - 2021-02-19 17:10 - 000000039 _____ C:\ProgramData\Documents\pre_fileassoc.tmp 2021-02-19 17:04 - 2021-02-19 17:04 - 000127067 _____ C:\Users\benoi\Downloads\SKM_367-20121021913180.pdf 2021-02-19 14:43 - 2021-02-19 14:43 - 000000000 ____D C:\Users\benoi\AppData\Local\Snap 2021-02-19 14:42 - 2021-02-19 14:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Snap Inc 2021-02-19 14:42 - 2021-02-19 14:42 - 000000000 ____D C:\Program Files\Snap Inc 2021-02-19 14:42 - 2020-10-12 21:08 - 002800232 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\SnapCameraVirtualDevice.sys 2021-02-18 11:37 - 2021-02-18 11:37 - 000228944 _____ C:\Users\benoi\Downloads\0d274a070d64ebb4c3e9d0b44ce334bf1c5ecd17-1613639711159.pdf 2021-02-17 18:18 - 2021-02-17 18:18 - 000277646 _____ C:\Users\benoi\Downloads\10edd0bdd305f1478b5a5af200d0c2ca85071982-1613575722375.pdf 2021-02-16 23:55 - 2021-02-16 23:55 - 000931459 _____ C:\Users\benoi\Downloads\rubik.zip 2021-02-16 21:34 - 2021-02-16 21:34 - 000002797 _____ C:\Users\benoi\Downloads\message (4).txt 2021-02-16 19:23 - 2021-02-16 19:23 - 000387963 _____ C:\Users\benoi\Downloads\nodejs-new-pantone-white.ai 2021-02-15 16:53 - 2021-02-15 16:53 - 000479068 _____ C:\Users\benoi\Downloads\3ae048c1ccd477d5faa9ffb1216173bbdafc16f4-1613400738003.pdf 2021-02-15 15:22 - 2021-02-15 15:22 - 000000000 ____D C:\Users\benoi\AppData\Roaming\Elzapat 2021-02-15 15:22 - 2021-02-15 15:22 - 000000000 ____D C:\Users\benoi\AppData\Local\Elzapat 2021-02-14 22:09 - 2021-02-14 22:09 - 000099735 _____ C:\Users\benoi\Downloads\ChickenChunks-1.16.4-2.7.0.85-universal (1).jar 2021-02-14 00:37 - 2021-02-14 00:37 - 000786723 _____ C:\Users\benoi\Downloads\BlueDream Prerequisite Mods (1).zip 2021-02-14 00:30 - 2021-02-14 00:30 - 000786723 _____ C:\Users\benoi\Downloads\BlueDream Prerequisite Mods.zip 2021-02-13 18:17 - 2021-02-13 19:11 - 000000000 ____D C:\Users\benoi\AppData\Roaming\Binance 2021-02-13 18:17 - 2021-02-13 18:17 - 000001956 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Binance.lnk 2021-02-13 18:17 - 2021-02-13 18:17 - 000000000 ____D C:\Users\benoi\AppData\Local\binance-updater 2021-02-13 18:17 - 2021-02-13 18:17 - 000000000 ____D C:\Program Files\Binance 2021-02-13 18:05 - 2021-02-13 18:05 - 000003115 _____ C:\Users\benoi\Downloads\maquette.html 2021-02-13 02:25 - 2021-02-13 02:25 - 000421849 _____ C:\Users\benoi\Downloads\export-alger (19).csv 2021-02-13 02:24 - 2021-02-13 02:24 - 000421849 _____ C:\Users\benoi\Downloads\export-alger (18).csv 2021-02-13 02:24 - 2021-02-13 02:24 - 000421849 _____ C:\Users\benoi\Downloads\export-alger (17).csv 2021-02-13 02:24 - 2021-02-13 02:24 - 000421849 _____ C:\Users\benoi\Downloads\export-alger (16).csv 2021-02-13 02:23 - 2021-02-13 02:23 - 000421849 _____ C:\Users\benoi\Downloads\export-alger (15).csv 2021-02-13 02:11 - 2021-02-13 02:11 - 000421849 _____ C:\Users\benoi\Downloads\export-alger (14).csv 2021-02-13 01:34 - 2021-02-13 01:34 - 000421849 _____ C:\Users\benoi\Downloads\export-alger (13).csv 2021-02-13 01:33 - 2021-02-13 01:33 - 000421849 _____ C:\Users\benoi\Downloads\export-alger (12).csv 2021-02-13 01:30 - 2021-02-13 01:30 - 000524288 _____ C:\Users\benoi\Downloads\512 (2).rnd 2021-02-11 21:00 - 2021-02-11 21:00 - 000524288 _____ C:\Users\benoi\Downloads\512.rnd 2021-02-11 21:00 - 2021-02-11 21:00 - 000524288 _____ C:\Users\benoi\Downloads\512 (1).rnd 2021-02-11 20:57 - 2021-02-11 20:57 - 000000609 _____ C:\Users\benoi\Downloads\export- (9).csv 2021-02-11 20:57 - 2021-02-11 20:57 - 000000609 _____ C:\Users\benoi\Downloads\export- (8).csv 2021-02-11 20:57 - 2021-02-11 20:57 - 000000609 _____ C:\Users\benoi\Downloads\export- (7).csv 2021-02-11 20:52 - 2021-02-11 20:52 - 000003716 _____ C:\Users\benoi\Downloads\export-brest202101 (7).csv 2021-02-11 20:52 - 2021-02-11 20:52 - 000003716 _____ C:\Users\benoi\Downloads\export-brest202101 (6).csv 2021-02-11 20:52 - 2021-02-11 20:52 - 000000609 _____ C:\Users\benoi\Downloads\export-202101.csv 2021-02-11 20:51 - 2021-02-11 20:51 - 000000609 _____ C:\Users\benoi\Downloads\export- (6).csv 2021-02-11 20:51 - 2021-02-11 20:51 - 000000609 _____ C:\Users\benoi\Downloads\export- (5).csv 2021-02-11 20:48 - 2021-02-11 20:48 - 000000609 _____ C:\Users\benoi\Downloads\export- (4).csv 2021-02-11 20:48 - 2021-02-11 20:48 - 000000609 _____ C:\Users\benoi\Downloads\export- (3).csv 2021-02-11 20:47 - 2021-02-11 20:47 - 000000609 _____ C:\Users\benoi\Downloads\export- (2).csv 2021-02-11 20:32 - 2021-02-11 20:32 - 000421849 _____ C:\Users\benoi\Downloads\export-alger (11).csv 2021-02-11 20:32 - 2021-02-11 20:32 - 000421849 _____ C:\Users\benoi\Downloads\export-alger (10).csv 2021-02-11 20:32 - 2021-02-11 20:32 - 000000609 _____ C:\Users\benoi\Downloads\export- (1).csv 2021-02-11 20:31 - 2021-02-11 20:31 - 000421849 _____ C:\Users\benoi\Downloads\export-alger (9).csv 2021-02-11 20:31 - 2021-02-11 20:31 - 000421849 _____ C:\Users\benoi\Downloads\export-alger (8).csv 2021-02-11 18:21 - 2021-02-11 18:21 - 000099735 _____ C:\Users\benoi\Downloads\ChickenChunks-1.16.4-2.7.0.85-universal.jar 2021-02-11 16:46 - 2021-02-11 16:46 - 000479190 _____ C:\Users\benoi\Downloads\DungeonCrawl-1.16.3-2.2.4.jar 2021-02-11 13:30 - 2021-03-05 00:35 - 000003540 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore1d6f7e7c486bc40 2021-02-11 03:57 - 2021-02-11 03:57 - 000003716 _____ C:\Users\benoi\Downloads\export-brest202101 (5).csv 2021-02-11 03:49 - 2021-02-11 03:49 - 000000000 ____D C:\Users\benoi\AppData\Local\node-gyp 2021-02-11 03:39 - 2021-02-11 03:39 - 000003716 _____ C:\Users\benoi\Downloads\export-brest202101 (4).csv 2021-02-11 03:21 - 2021-02-11 03:21 - 000003716 _____ C:\Users\benoi\Downloads\export-brest202101 (3).csv 2021-02-11 03:19 - 2021-02-11 03:19 - 000003716 _____ C:\Users\benoi\Downloads\export-brest202101.csv 2021-02-11 03:19 - 2021-02-11 03:19 - 000003716 _____ C:\Users\benoi\Downloads\export-brest202101 (2).csv 2021-02-11 03:19 - 2021-02-11 03:19 - 000003716 _____ C:\Users\benoi\Downloads\export-brest202101 (1).csv 2021-02-10 23:56 - 2021-04-02 15:56 - 000000000 ____D C:\Program Files (x86)\Overwolf 2021-02-10 23:56 - 2021-02-10 23:56 - 000004384 _____ C:\WINDOWS\system32\Tasks\Overwolf Updater Task 2021-02-10 23:56 - 2021-02-10 23:56 - 000000000 ____D C:\Users\benoi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Overwolf 2021-02-10 23:56 - 2021-02-10 23:56 - 000000000 ____D C:\ProgramData\Overwolf 2021-02-10 23:53 - 2021-02-10 23:53 - 001386784 _____ (Overwolf Ltd.) C:\Users\benoi\Downloads\CurseForge - LP-Installer (1).exe 2021-02-10 23:51 - 2021-02-16 11:05 - 000000000 ____D C:\Users\benoi\AppData\Local\Overwolf 2021-02-10 23:51 - 2021-02-10 23:51 - 001386784 _____ (Overwolf Ltd.) C:\Users\benoi\Downloads\CurseForge - LP-Installer.exe 2021-02-10 22:44 - 2021-02-10 22:44 - 000421849 _____ C:\Users\benoi\Downloads\export-alger (7).csv 2021-02-10 22:43 - 2021-02-10 22:43 - 000421849 _____ C:\Users\benoi\Downloads\export-alger (6).csv 2021-02-10 22:43 - 2021-02-10 22:43 - 000421849 _____ C:\Users\benoi\Downloads\export-alger (5).xls 2021-02-10 22:41 - 2021-02-10 22:41 - 000421849 _____ C:\Users\benoi\Downloads\export-alger (5).csv 2021-02-10 21:54 - 2021-02-10 21:54 - 000434214 _____ C:\Users\benoi\Downloads\export-cotonou.csv 2021-02-10 21:54 - 2021-02-10 21:54 - 000434214 _____ C:\Users\benoi\Downloads\export-cotonou (1).csv 2021-02-10 21:54 - 2021-02-10 21:54 - 000420355 _____ C:\Users\benoi\Downloads\export-oran.csv 2021-02-10 21:53 - 2021-02-10 21:53 - 000421849 _____ C:\Users\benoi\Downloads\export-alger (4).csv 2021-02-10 21:53 - 2021-02-10 21:53 - 000421849 _____ C:\Users\benoi\Downloads\export-alger (3).csv 2021-02-10 21:53 - 2021-02-10 21:53 - 000421849 _____ C:\Users\benoi\Downloads\export-alger (2).csv 2021-02-10 21:52 - 2021-02-10 21:52 - 000421849 _____ C:\Users\benoi\Downloads\export-alger (1).csv 2021-02-10 21:49 - 2021-02-10 21:49 - 000421849 _____ C:\Users\benoi\Downloads\export-alger.csv 2021-02-10 18:23 - 2021-02-10 18:23 - 000000000 ____D C:\Users\benoi\AppData\Roaming\twitch-desktop-electron-platform 2021-02-09 15:05 - 2021-02-09 15:05 - 000490931 _____ C:\Users\benoi\Downloads\d4941ae3888784f0de4b6b9ec7c15a53a309ae3f-1612874939454.pdf 2021-02-08 16:26 - 2021-02-08 16:26 - 002433157 _____ C:\Users\benoi\Downloads\ModdedFaithful+1.12.2-rv1.zip 2021-02-07 23:17 - 2021-02-07 23:17 - 000000000 ____D C:\ProgramData\Documents\Hewlett-Packard 2021-02-07 19:38 - 2021-02-07 19:38 - 003348464 _____ C:\Users\benoi\Downloads\Serveur_Minecraft_GT_-_TUTO (3).pdf 2021-02-07 19:35 - 2021-02-07 19:35 - 003348464 _____ C:\Users\benoi\Downloads\Serveur_Minecraft_GT_-_TUTO (2).pdf 2021-02-07 19:32 - 2021-02-07 19:32 - 003348464 _____ C:\Users\benoi\Downloads\Serveur_Minecraft_GT_-_TUTO (1).pdf 2021-02-07 18:38 - 2021-02-07 18:38 - 003348464 _____ C:\Users\benoi\Downloads\Serveur_Minecraft_GT_-_TUTO.pdf 2021-02-05 11:14 - 2021-03-23 14:50 - 000220616 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys 2021-02-05 00:46 - 2021-02-05 00:46 - 000001900 _____ C:\Users\benoi\Downloads\form-by-faary.zip 2021-02-04 19:46 - 2021-02-04 19:46 - 000689202 _____ C:\Users\benoi\Downloads\tp4.pdf 2021-02-04 15:00 - 2021-03-11 03:34 - 000000000 ____D C:\WINDOWS\Panther 2021-02-03 10:15 - 2021-02-03 10:15 - 000689338 _____ C:\Users\benoi\Downloads\4.3.8 Packet Tracer - Configure Layer 3 Switching and Inter-VLAN Routing.pka 2021-02-03 09:29 - 2021-02-03 09:29 - 000254688 _____ C:\Users\benoi\Downloads\6.3.3.6 Packet Tracer - Configuring Router-on-a-Stick Inter-VLAN Routing.pka 2021-02-02 19:25 - 2021-02-02 19:25 - 000001413 _____ C:\Users\benoi\Downloads\Fichier_6ele.svg 2021-02-02 18:58 - 2021-02-02 18:58 - 001527157 _____ C:\Users\benoi\Downloads\Sans_titre_238.psd 2021-02-01 19:43 - 2021-02-01 19:43 - 000000772 _____ C:\Users\benoi\Downloads\iconfinder_maximize_134215.svg 2021-02-01 17:52 - 2021-02-01 17:52 - 000281352 _____ C:\Users\benoi\Downloads\25dac6314241becc16baaad370306646469fca95-1612192750196.pdf 2021-02-01 16:13 - 2021-02-01 16:13 - 000000767 _____ C:\Users\benoi\Downloads\close.svg 2021-01-31 19:00 - 2021-01-31 19:00 - 000001599 _____ C:\Users\benoi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OldSchool RuneScape.lnk 2021-01-31 19:00 - 2021-01-31 19:00 - 000000000 ____D C:\Users\benoi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OldSchool RuneScape 2021-01-31 19:00 - 2021-01-31 19:00 - 000000000 ____D C:\.jagex_cache_32 2021-01-31 17:48 - 2021-01-31 17:48 - 000000000 ____D C:\ProgramData\Microsoft OneDrive 2021-01-31 17:46 - 2021-04-03 04:32 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2021-01-31 17:46 - 2021-03-13 16:15 - 000003380 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2862999081-2136887877-1863393634-1001 2021-01-31 17:46 - 2021-03-06 08:36 - 000003522 _____ C:\WINDOWS\system32\Tasks\AdobeGCInvoker-1.0 2021-01-31 17:46 - 2021-03-05 00:35 - 000003634 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2021-01-31 17:46 - 2021-03-02 11:45 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2021-01-31 17:46 - 2021-02-05 12:00 - 000003588 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA 2021-01-31 17:46 - 2021-02-05 12:00 - 000003464 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore 2021-01-31 17:46 - 2021-01-31 17:49 - 000003162 _____ C:\WINDOWS\system32\Tasks\Driver Booster Scheduler 2021-01-31 17:46 - 2021-01-31 17:49 - 000003148 _____ C:\WINDOWS\system32\Tasks\Driver Booster Update 2021-01-31 17:46 - 2021-01-31 17:49 - 000002922 _____ C:\WINDOWS\system32\Tasks\Driver Booster SkipUAC (benoi) 2021-01-31 17:46 - 2021-01-31 17:46 - 000003398 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-01-31 17:46 - 2021-01-31 17:46 - 000003338 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2021-01-31 17:46 - 2021-01-31 17:46 - 000003196 _____ C:\WINDOWS\system32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-01-31 17:46 - 2021-01-31 17:46 - 000003152 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-01-31 17:46 - 2021-01-31 17:46 - 000002984 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-01-31 17:46 - 2021-01-31 17:46 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-01-31 17:46 - 2021-01-31 17:46 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-01-31 17:46 - 2021-01-31 17:46 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-01-31 17:46 - 2021-01-31 17:46 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-01-31 17:46 - 2021-01-31 17:46 - 000002914 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-01-31 17:46 - 2021-01-31 17:46 - 000002744 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-01-31 17:46 - 2021-01-31 17:46 - 000002728 _____ C:\WINDOWS\system32\Tasks\HPCustParticipation HP Officejet Pro X576dw MFP 2021-01-31 17:46 - 2021-01-31 17:46 - 000002566 _____ C:\WINDOWS\system32\Tasks\Avira_Antivirus_Systray 2021-01-31 17:46 - 2021-01-31 17:46 - 000002176 _____ C:\WINDOWS\system32\Tasks\npcapwatchdog 2021-01-31 17:46 - 2021-01-31 17:46 - 000000020 ___SH C:\Users\benoi\ntuser.ini 2021-01-31 17:46 - 2021-01-31 17:46 - 000000000 ____D C:\WINDOWS\SysWOW64\NV 2021-01-31 17:46 - 2021-01-31 17:46 - 000000000 ____D C:\WINDOWS\system32\NV 2021-01-31 17:45 - 2021-01-31 17:46 - 000011433 _____ C:\WINDOWS\diagwrn.xml 2021-01-31 17:45 - 2021-01-31 17:46 - 000011433 _____ C:\WINDOWS\diagerr.xml 2021-01-31 17:41 - 2021-04-03 04:39 - 001913464 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2021-01-31 17:41 - 2021-01-31 17:41 - 000000000 ____D C:\Program Files\Virtual Desktop 2021-01-31 17:35 - 2021-03-13 16:15 - 000002367 _____ C:\Users\benoi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2021-01-31 17:35 - 2021-02-26 11:31 - 000000000 ____D C:\Users\benoi 2021-01-31 17:35 - 2021-01-31 17:35 - 000000000 _SHDL C:\Users\benoi\Voisinage réseau 2021-01-31 17:35 - 2021-01-31 17:35 - 000000000 _SHDL C:\Users\benoi\Voisinage d'impression 2021-01-31 17:35 - 2021-01-31 17:35 - 000000000 _SHDL C:\Users\benoi\Modèles 2021-01-31 17:35 - 2021-01-31 17:35 - 000000000 _SHDL C:\Users\benoi\Mes documents 2021-01-31 17:35 - 2021-01-31 17:35 - 000000000 _SHDL C:\Users\benoi\Menu Démarrer 2021-01-31 17:35 - 2021-01-31 17:35 - 000000000 _SHDL C:\Users\benoi\Documents\Mes vidéos 2021-01-31 17:35 - 2021-01-31 17:35 - 000000000 _SHDL C:\Users\benoi\Documents\Mes images 2021-01-31 17:35 - 2021-01-31 17:35 - 000000000 _SHDL C:\Users\benoi\Documents\Ma musique 2021-01-31 17:35 - 2021-01-31 17:35 - 000000000 _SHDL C:\Users\benoi\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2021-01-31 17:35 - 2021-01-31 17:35 - 000000000 _SHDL C:\Users\benoi\AppData\Local\Historique 2021-01-31 17:33 - 2021-04-03 14:22 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2021-01-31 17:33 - 2021-04-03 04:32 - 000008192 ___SH C:\DumpStack.log.tmp 2021-01-31 17:33 - 2021-03-16 17:57 - 001431384 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2021-01-31 16:26 - 2021-01-31 16:33 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate 2021-01-31 16:25 - 2021-01-31 17:35 - 000000000 ____D C:\WINDOWS\ServiceProfiles 2021-01-31 16:25 - 2021-01-31 16:25 - 000008192 _____ C:\WINDOWS\system32\config\userdiff 2021-01-31 16:24 - 2021-01-31 16:24 - 000000000 ____D C:\ProgramData\ssh 2021-01-31 16:21 - 2021-01-31 16:21 - 004898144 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpltfm.dll 2021-01-31 16:21 - 2021-01-31 16:21 - 003860832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpltfm.dll 2021-01-31 16:21 - 2021-01-31 16:21 - 002254336 _____ C:\WINDOWS\system32\dwmscene.dll 2021-01-31 16:21 - 2021-01-31 16:21 - 001354080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpal.dll 2021-01-31 16:21 - 2021-01-31 16:21 - 001333760 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll 2021-01-31 16:21 - 2021-01-31 16:21 - 001091936 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmcodecs.dll 2021-01-31 16:21 - 2021-01-31 16:21 - 001032544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ortcengine.dll 2021-01-31 16:21 - 2021-01-31 16:21 - 000980320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpal.dll 2021-01-31 16:21 - 2021-01-31 16:21 - 000915296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmcodecs.dll 2021-01-31 16:21 - 2021-01-31 16:21 - 000732000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ortcengine.dll 2021-01-31 16:21 - 2021-01-31 16:21 - 000729600 _____ (Microsoft Corporation) C:\WINDOWS\system32\hhctrl.ocx 2021-01-31 16:21 - 2021-01-31 16:21 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl 2021-01-31 16:21 - 2021-01-31 16:21 - 000581120 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr 2021-01-31 16:21 - 2021-01-31 16:21 - 000575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hhctrl.ocx 2021-01-31 16:21 - 2021-01-31 16:21 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr 2021-01-31 16:21 - 2021-01-31 16:21 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appwiz.cpl 2021-01-31 16:21 - 2021-01-31 16:21 - 000455680 _____ C:\WINDOWS\SysWOW64\WindowManagementAPI.dll 2021-01-31 16:21 - 2021-01-31 16:21 - 000446976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmsys.cpl 2021-01-31 16:21 - 2021-01-31 16:21 - 000422912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv 2021-01-31 16:21 - 2021-01-31 16:21 - 000330752 _____ C:\WINDOWS\SysWOW64\ssdm.dll 2021-01-31 16:21 - 2021-01-31 16:21 - 000304128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksproxy.ax 2021-01-31 16:21 - 2021-01-31 16:21 - 000266240 _____ C:\WINDOWS\SysWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll 2021-01-31 16:21 - 2021-01-31 16:21 - 000266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpg2splt.ax 2021-01-31 16:21 - 2021-01-31 16:21 - 000240640 _____ C:\WINDOWS\SysWOW64\CoreMas.dll 2021-01-31 16:21 - 2021-01-31 16:21 - 000238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\intl.cpl 2021-01-31 16:21 - 2021-01-31 16:21 - 000235520 _____ C:\WINDOWS\SysWOW64\HeatCore.dll 2021-01-31 16:21 - 2021-01-31 16:21 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ksproxy.ax 2021-01-31 16:21 - 2021-01-31 16:21 - 000221184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bthprops.cpl 2021-01-31 16:21 - 2021-01-31 16:21 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mpg2splt.ax 2021-01-31 16:21 - 2021-01-31 16:21 - 000182272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\timedate.cpl 2021-01-31 16:21 - 2021-01-31 16:21 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\intl.cpl 2021-01-31 16:21 - 2021-01-31 16:21 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\VBICodec.ax 2021-01-31 16:21 - 2021-01-31 16:21 - 000157184 _____ C:\WINDOWS\system32\uwfcsp.dll 2021-01-31 16:21 - 2021-01-31 16:21 - 000138056 _____ C:\WINDOWS\system32\HvsiManagementApi.dll 2021-01-31 16:21 - 2021-01-31 16:21 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VBICodec.ax 2021-01-31 16:21 - 2021-01-31 16:21 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\activeds.tlb 2021-01-31 16:21 - 2021-01-31 16:21 - 000111616 _____ C:\WINDOWS\system32\RDVGHelper.exe 2021-01-31 16:21 - 2021-01-31 16:21 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncpa.cpl 2021-01-31 16:21 - 2021-01-31 16:21 - 000101704 _____ C:\WINDOWS\SysWOW64\HvsiManagementApi.dll 2021-01-31 16:21 - 2021-01-31 16:21 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncpa.cpl 2021-01-31 16:21 - 2021-01-31 16:21 - 000095744 _____ C:\WINDOWS\system32\VirtualMonitorManager.dll 2021-01-31 16:21 - 2021-01-31 16:21 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx 2021-01-31 16:21 - 2021-01-31 16:21 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl 2021-01-31 16:21 - 2021-01-31 16:21 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx 2021-01-31 16:21 - 2021-01-31 16:21 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl 2021-01-31 16:21 - 2021-01-31 16:21 - 000067072 _____ C:\WINDOWS\system32\BWContextHandler.dll 2021-01-31 16:21 - 2021-01-31 16:21 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe 2021-01-31 16:21 - 2021-01-31 16:21 - 000056672 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmmvrortc.dll 2021-01-31 16:21 - 2021-01-31 16:21 - 000055376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmmvrortc.dll 2021-01-31 16:21 - 2021-01-31 16:21 - 000053760 _____ C:\WINDOWS\SysWOW64\BWContextHandler.dll 2021-01-31 16:21 - 2021-01-31 16:21 - 000048640 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2021-01-31 16:21 - 2021-01-31 16:21 - 000047472 _____ C:\WINDOWS\SysWOW64\umpdc.dll 2021-01-31 16:21 - 2021-01-31 16:21 - 000045880 _____ C:\WINDOWS\system32\HvSocket.dll 2021-01-31 16:21 - 2021-01-31 16:21 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2021-01-31 16:21 - 2021-01-31 16:21 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msacm32.drv 2021-01-31 16:21 - 2021-01-31 16:21 - 000010752 _____ C:\WINDOWS\SysWOW64\agentactivationruntimestarter.exe 2021-01-31 16:21 - 2021-01-31 16:21 - 000001370 _____ C:\WINDOWS\system32\ThirdPartyNoticesBySHS.txt 2021-01-31 16:20 - 2021-01-31 16:20 - 004227116 _____ C:\WINDOWS\system32\DefaultHrtfs.bin 2021-01-31 16:20 - 2021-01-31 16:20 - 002260992 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll 2021-01-31 16:20 - 2021-01-31 16:20 - 002260480 _____ (The ICU Project) C:\WINDOWS\system32\icu.dll 2021-01-31 16:20 - 2021-01-31 16:20 - 000643072 _____ C:\WINDOWS\system32\WindowManagementAPI.dll 2021-01-31 16:20 - 2021-01-31 16:20 - 000562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2021-01-31 16:20 - 2021-01-31 16:20 - 000544768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmsys.cpl 2021-01-31 16:20 - 2021-01-31 16:20 - 000455168 _____ C:\WINDOWS\system32\ssdm.dll 2021-01-31 16:20 - 2021-01-31 16:20 - 000363520 _____ C:\WINDOWS\system32\Windows.Internal.UI.Shell.WindowTabManager.dll 2021-01-31 16:20 - 2021-01-31 16:20 - 000306688 _____ C:\WINDOWS\system32\HeatCore.dll 2021-01-31 16:20 - 2021-01-31 16:20 - 000287232 _____ C:\WINDOWS\system32\CoreMas.dll 2021-01-31 16:20 - 2021-01-31 16:20 - 000266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthprops.cpl 2021-01-31 16:20 - 2021-01-31 16:20 - 000243200 _____ (Microsoft Corporation) C:\WINDOWS\system32\timedate.cpl 2021-01-31 16:20 - 2021-01-31 16:20 - 000197632 _____ C:\WINDOWS\system32\IHDS.dll 2021-01-31 16:20 - 2021-01-31 16:20 - 000190976 _____ C:\WINDOWS\system32\BthpanContextHandler.dll 2021-01-31 16:20 - 2021-01-31 16:20 - 000165888 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe 2021-01-31 16:20 - 2021-01-31 16:20 - 000152064 _____ C:\WINDOWS\system32\EoAExperiences.exe 2021-01-31 16:20 - 2021-01-31 16:20 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\activeds.tlb 2021-01-31 16:20 - 2021-01-31 16:20 - 000089088 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.proxystub.dll 2021-01-31 16:20 - 2021-01-31 16:20 - 000074240 _____ C:\WINDOWS\system32\rdsxvmaudio.dll 2021-01-31 16:20 - 2021-01-31 16:20 - 000073216 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.internal.proxystub.dll 2021-01-31 16:20 - 2021-01-31 16:20 - 000064552 _____ C:\WINDOWS\system32\umpdc.dll 2021-01-31 16:20 - 2021-01-31 16:20 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msacm32.drv 2021-01-31 16:20 - 2021-01-31 16:20 - 000029696 _____ (The ICU Project) C:\WINDOWS\system32\icuuc.dll 2021-01-31 16:20 - 2021-01-31 16:20 - 000025088 _____ (The ICU Project) C:\WINDOWS\system32\icuin.dll 2021-01-31 16:20 - 2021-01-31 16:20 - 000013312 _____ C:\WINDOWS\system32\agentactivationruntimestarter.exe 2021-01-31 16:17 - 2021-03-23 14:50 - 000248992 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys 2021-01-31 16:17 - 2021-01-31 16:16 - 000019912 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys 2021-01-31 16:16 - 2021-01-31 16:16 - 000076060 _____ C:\WINDOWS\SysWOW64\xpsrchvw.xml 2021-01-31 16:16 - 2021-01-31 16:16 - 000076060 _____ C:\WINDOWS\system32\xpsrchvw.xml 2021-01-31 16:15 - 2021-01-31 16:15 - 000417792 _____ C:\WINDOWS\system32\d3dconfig.exe 2021-01-31 16:15 - 2021-01-31 16:15 - 000374784 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\DXCpl.exe 2021-01-31 16:15 - 2021-01-31 16:15 - 000365056 _____ C:\WINDOWS\SysWOW64\d3dconfig.exe 2021-01-31 16:15 - 2021-01-31 16:15 - 000347136 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\SysWOW64\DXCpl.exe 2021-01-31 16:11 - 2021-01-31 16:33 - 000000000 ____D C:\Program Files (x86)\MSBuild 2021-01-31 16:11 - 2021-01-31 16:11 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer 2021-01-31 16:11 - 2021-01-31 16:11 - 000000000 ____D C:\Program Files\Reference Assemblies 2021-01-31 16:11 - 2021-01-31 16:11 - 000000000 ____D C:\Program Files\MSBuild 2021-01-31 16:11 - 2021-01-31 16:11 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies 2021-01-29 16:29 - 2021-01-29 16:29 - 000000000 ___HD C:\$WinREAgent 2021-01-24 00:49 - 2021-01-31 16:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EasyABC 2021-01-24 00:49 - 2021-01-24 00:50 - 000000000 ____D C:\Users\benoi\AppData\Local\EasyABC 2021-01-24 00:49 - 2021-01-24 00:49 - 000000000 ____D C:\Program Files (x86)\EasyABC 2021-01-22 09:12 - 2021-01-31 16:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools 2021-01-22 09:12 - 2021-01-22 09:12 - 000002456 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype for Business.lnk 2021-01-22 09:12 - 2021-01-22 09:12 - 000002393 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote.lnk 2021-01-20 18:34 - 2021-01-20 18:34 - 000000000 ____D C:\Users\benoi\Documents\steamvr 2021-01-20 18:34 - 2021-01-20 18:34 - 000000000 ____D C:\Users\benoi\AppData\Local\SteamVR 2021-01-20 18:26 - 2021-02-24 20:06 - 000000000 ____D C:\Users\benoi\AppData\Roaming\Oculus 2021-01-20 18:26 - 2021-02-24 19:53 - 000000000 ____D C:\Users\benoi\AppData\Roaming\OculusClient 2021-01-20 18:26 - 2021-01-31 16:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Oculus 2021-01-20 18:26 - 2021-01-20 18:26 - 000628800 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\oculusvadapo.dll 2021-01-20 18:26 - 2021-01-20 18:26 - 000072208 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\oculusvad.sys 2021-01-20 18:26 - 2021-01-20 18:26 - 000032856 _____ (Facebook Inc.) C:\WINDOWS\system32\Drivers\Oculus_ViGEmBus.sys 2021-01-20 18:26 - 2021-01-20 18:26 - 000000000 ____D C:\ProgramData\Oculus 2021-01-20 18:21 - 2021-03-31 08:47 - 000000000 ____D C:\Program Files\Oculus 2021-01-20 18:21 - 2021-01-20 18:21 - 000000000 ____D C:\Program Files (x86)\VulkanRT 2021-01-20 18:15 - 2021-04-03 04:33 - 000000000 ____D C:\Users\benoi\AppData\Local\Oculus 2021-01-20 18:13 - 2021-01-20 18:13 - 000000000 ____D C:\Users\benoi\AppData\Local\openvr 2021-01-20 18:04 - 2021-01-20 18:04 - 000000000 ____D C:\Users\benoi\AppData\Local\install 2021-01-20 18:02 - 2021-01-20 18:02 - 000000000 ____D C:\Users\benoi\AppData\LocalLow\VRChat 2021-01-20 17:38 - 2021-01-31 16:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Virtual Desktop Streamer 2021-01-20 17:38 - 2021-01-21 17:41 - 000000000 ____D C:\ProgramData\Virtual Desktop 2021-01-20 17:38 - 2021-01-20 17:38 - 000000000 ____D C:\Program Files\Virtual Desktop Streamer 2021-01-13 18:41 - 2021-01-13 18:41 - 000000000 ____D C:\Users\benoi\AppData\Local\@badlionnative-desktop-updater 2021-01-08 20:15 - 2021-01-08 20:15 - 000000000 ____D C:\Users\benoi\AppData\Roaming\Pixelator 2021-01-08 20:15 - 2021-01-08 20:15 - 000000000 ____D C:\Users\benoi\AppData\Roaming\Electron 2021-01-08 15:14 - 2020-10-05 15:03 - 001690976 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdagenco6420103.dll 2021-01-08 15:14 - 2020-10-05 15:03 - 001507224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2021-01-08 15:14 - 2020-10-05 15:03 - 001161112 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2021-01-08 15:14 - 2020-10-05 15:03 - 000816368 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmcumd.dll 2021-01-08 15:14 - 2020-10-05 15:03 - 000673520 _____ C:\WINDOWS\system32\nvofapi64.dll 2021-01-08 15:14 - 2020-10-05 15:03 - 000670616 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll 2021-01-08 15:14 - 2020-10-05 15:03 - 000555248 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll 2021-01-08 15:14 - 2020-10-05 15:03 - 000543128 _____ C:\WINDOWS\SysWOW64\nvofapi.dll 2021-01-08 15:14 - 2020-10-05 15:03 - 000230720 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys 2021-01-08 15:14 - 2020-10-05 15:03 - 000047424 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdap64.dll 2021-01-08 15:14 - 2020-10-05 15:02 - 007707544 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2021-01-08 15:14 - 2020-10-05 15:02 - 006860184 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2021-01-08 15:14 - 2020-10-05 15:02 - 004174064 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2021-01-08 15:14 - 2020-10-05 15:02 - 002508528 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2021-01-08 15:14 - 2020-10-05 15:02 - 002098072 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2021-01-08 15:14 - 2020-10-05 15:02 - 001731824 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6445671.dll 2021-01-08 15:14 - 2020-10-05 15:02 - 001585560 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2021-01-08 15:14 - 2020-10-05 15:02 - 001482992 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6445671.dll 2021-01-08 15:14 - 2020-10-05 15:02 - 000813464 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2021-01-08 15:14 - 2020-10-05 15:02 - 000657304 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll 2021-01-08 15:14 - 2020-10-05 15:00 - 007001536 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll 2021-01-08 15:14 - 2020-10-05 15:00 - 005972824 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2021-01-08 15:14 - 2020-10-05 14:42 - 000058620 _____ C:\WINDOWS\system32\nvinfo.pb 2021-01-03 16:12 - 2021-01-03 16:12 - 000000016 _____ C:\Users\benoi\AppData\Roaming\obs-virtualcam.txt ==================== Three months (modified) ================== (If an entry is included in the fixlist, the file/folder will be moved.) 2021-04-03 15:06 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2021-04-03 14:47 - 2020-11-10 14:55 - 000000000 ____D C:\Users\benoi\AppData\Roaming\WTablet 2021-04-03 14:41 - 2020-10-24 11:29 - 000000000 ____D C:\Users\benoi\AppData\Roaming\discord 2021-04-03 12:25 - 2020-05-25 21:38 - 000000000 ____D C:\ProgramData\NVIDIA 2021-04-03 04:44 - 2020-06-26 22:51 - 000000000 ___HD C:\ProgramData\Documents\AdobeGCData 2021-04-03 04:39 - 2019-12-07 16:50 - 000791762 _____ C:\WINDOWS\system32\perfh00C.dat 2021-04-03 04:39 - 2019-12-07 16:50 - 000149928 _____ C:\WINDOWS\system32\perfc00C.dat 2021-04-03 04:39 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF 2021-04-03 04:34 - 2020-06-02 15:28 - 000000001 _____ C:\WINDOWS\vgkbootstatus.dat 2021-04-03 04:33 - 2020-05-26 10:31 - 000000000 ____D C:\Users\benoi\AppData\Roaming\LGHUB 2021-04-03 04:33 - 2020-05-26 10:31 - 000000000 ____D C:\Users\benoi\AppData\Local\LGHUB 2021-04-03 04:33 - 2020-05-25 21:50 - 000000000 ___RD C:\Users\benoi\OneDrive 2021-04-03 04:32 - 2020-10-08 20:09 - 000000000 __SHD C:\Users\benoi\IntelGraphicsProfiles 2021-04-03 04:32 - 2020-10-08 20:09 - 000000000 ____D C:\Intel 2021-04-03 04:31 - 2019-12-07 11:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2021-04-03 03:53 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps 2021-04-03 03:53 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2021-04-02 19:42 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2021-04-02 19:42 - 2019-12-07 11:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM 2021-04-02 17:59 - 2020-05-26 13:48 - 000000000 ____D C:\Users\benoi\AppData\Local\CrashDumps 2021-04-02 12:39 - 2020-06-02 13:57 - 000000000 ____D C:\Program Files\Riot Vanguard 2021-04-01 18:40 - 2020-08-01 00:07 - 000000000 ____D C:\Users\benoi\AppData\Local\osu! 2021-04-01 16:38 - 2020-06-02 13:46 - 000000000 ____D C:\ProgramData\Riot Games 2021-04-01 15:57 - 2020-05-25 21:54 - 000000000 ____D C:\Users\benoi\AppData\Local\PlaceholderTileLogoFolder 2021-03-31 20:49 - 2020-05-27 10:43 - 000000000 ____D C:\Users\benoi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Visual Studio Code 2021-03-31 20:49 - 2020-05-26 11:33 - 000000000 ____D C:\Users\benoi\AppData\Roaming\Code 2021-03-31 15:48 - 2020-12-02 10:49 - 000000000 ____D C:\Users\benoi\AppData\Roaming\npm-cache 2021-03-31 15:36 - 2020-09-26 01:37 - 000000000 ____D C:\Users\benoi\AppData\Roaming\vlc 2021-03-31 15:05 - 2020-12-01 23:41 - 000000000 ___RD C:\Users\benoi\Creative Cloud Files 2021-03-31 15:03 - 2020-05-26 18:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2021-03-30 18:37 - 2020-05-26 18:06 - 000209744 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys 2021-03-28 20:15 - 2020-05-26 15:16 - 000000000 ____D C:\Users\benoi\AppData\Roaming\Spotify 2021-03-28 02:15 - 2020-05-26 21:43 - 000000000 ____D C:\Users\benoi\.VirtualBox 2021-03-28 01:09 - 2021-01-01 18:42 - 000000028 _____ C:\Users\benoi\AppData\Roaming\kulerdata.json 2021-03-27 23:01 - 2020-05-26 21:43 - 000000000 ____D C:\ProgramData\VirtualBox 2021-03-27 22:07 - 2020-06-27 14:15 - 000000000 ____D C:\ProgramData\boost_interprocess 2021-03-27 17:03 - 2020-06-26 22:51 - 000000000 ____D C:\Program Files\Common Files\Adobe 2021-03-27 14:14 - 2020-05-26 10:24 - 000000000 ____D C:\Users\benoi\AppData\Local\D3DSCache 2021-03-27 11:26 - 2020-08-02 15:22 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2021-03-27 11:24 - 2020-09-16 18:13 - 000000000 ____D C:\Program Files\LGHUB 2021-03-27 11:21 - 2020-08-30 17:59 - 000000000 ____D C:\Program Files\Mozilla Firefox 2021-03-27 11:21 - 2020-08-30 17:59 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2021-03-26 20:12 - 2020-08-30 18:00 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2021-03-26 20:12 - 2020-08-30 18:00 - 000000000 ____D C:\Users\benoi\AppData\LocalLow\Mozilla 2021-03-26 20:12 - 2020-08-30 17:59 - 000000000 ____D C:\ProgramData\Mozilla 2021-03-26 20:06 - 2020-05-26 15:18 - 000000000 ____D C:\Users\benoi\AppData\Local\Spotify 2021-03-25 21:53 - 2020-05-26 12:23 - 000002368 _____ C:\Users\benoi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Teams.lnk 2021-03-22 19:05 - 2020-05-25 21:48 - 000000000 ____D C:\Users\benoi\AppData\Roaming\Adobe 2021-03-22 19:05 - 2020-05-25 21:48 - 000000000 ____D C:\Users\benoi\AppData\Local\Packages 2021-03-21 19:51 - 2020-12-02 10:45 - 000000000 ____D C:\Users\benoi\AppData\Roaming\npm 2021-03-20 18:40 - 2020-06-26 22:51 - 000000000 ____D C:\Program Files\Adobe 2021-03-19 20:36 - 2020-05-26 18:06 - 000199312 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys 2021-03-19 20:33 - 2020-05-26 11:30 - 000000000 ____D C:\Program Files\Microsoft Office 2021-03-15 14:57 - 2020-12-16 17:27 - 000000000 ____D C:\Users\benoi\AppData\Roaming\obs-studio 2021-03-13 01:11 - 2020-05-29 19:46 - 000000128 _____ C:\Users\benoi\AppData\Local\PUTTY.RND 2021-03-12 16:04 - 2020-05-27 09:19 - 000000000 ____D C:\Users\benoi\VirtualBox VMs 2021-03-12 04:03 - 2019-12-07 16:53 - 000000000 ___SD C:\WINDOWS\system32\AppV 2021-03-12 04:03 - 2019-12-07 16:53 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2021-03-12 04:03 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2021-03-12 04:03 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2021-03-12 04:03 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2021-03-12 04:03 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2021-03-12 04:03 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources 2021-03-12 04:03 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2021-03-12 04:03 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2021-03-12 04:03 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\setup 2021-03-12 04:03 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2021-03-12 04:03 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2021-03-12 04:03 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Provisioning 2021-03-12 04:03 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2021-03-12 04:03 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2021-03-11 20:29 - 2020-07-02 13:00 - 000002114 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat Distiller DC.lnk 2021-03-11 20:29 - 2020-07-02 13:00 - 000002103 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat DC.lnk 2021-03-11 14:25 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2021-03-11 14:14 - 2020-05-30 11:24 - 000000000 ____D C:\WINDOWS\system32\MRT 2021-03-11 14:10 - 2020-05-30 11:24 - 131005360 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2021-03-11 03:34 - 2020-06-08 08:05 - 000000000 ____D C:\ESD 2021-03-10 10:26 - 2020-11-03 16:39 - 000000176 _____ C:\Users\benoi\.packettracer 2021-03-10 10:26 - 2020-11-03 16:39 - 000000000 ____D C:\Users\benoi\Cisco Packet Tracer 7.3.1 2021-03-07 22:19 - 2020-05-26 17:04 - 000000000 ____D C:\Users\benoi\AppData\Local\UnrealEngine 2021-03-05 22:03 - 2020-05-29 19:54 - 000000000 ____D C:\Users\benoi\AppData\Roaming\FileZilla ==================== Files in the root of some directories ======== 2021-02-24 20:04 - 2021-02-24 20:06 - 000000000 _____ () C:\Users\benoi\AppData\Roaming\.OculusDebugToolGUI 2021-01-01 18:42 - 2021-03-28 01:09 - 000000028 _____ () C:\Users\benoi\AppData\Roaming\kulerdata.json 2021-01-03 16:12 - 2021-01-03 16:12 - 000000016 _____ () C:\Users\benoi\AppData\Roaming\obs-virtualcam.txt 2021-03-23 08:56 - 2021-03-27 20:33 - 000002702 _____ () C:\Users\benoi\AppData\Local\krita-sysinfo.log 2021-03-23 08:56 - 2021-03-27 20:33 - 000002302 _____ () C:\Users\benoi\AppData\Local\krita.log 2021-03-23 09:53 - 2021-03-23 09:53 - 000000039 _____ () C:\Users\benoi\AppData\Local\kritadisplayrc 2021-03-23 08:56 - 2021-03-27 22:00 - 000016166 _____ () C:\Users\benoi\AppData\Local\kritarc 2020-06-26 23:57 - 2020-06-26 23:57 - 000000000 _____ () C:\Users\benoi\AppData\Local\oobelibMkey.log 2020-05-29 19:46 - 2021-03-13 01:11 - 000000128 _____ () C:\Users\benoi\AppData\Local\PUTTY.RND 2021-01-01 21:18 - 2021-01-01 21:18 - 000000218 _____ () C:\Users\benoi\AppData\Local\recently-used.xbel 2021-03-05 01:45 - 2021-03-05 01:45 - 000007600 _____ () C:\Users\benoi\AppData\Local\Resmon.ResmonCfg ==================== SigCheckExt ========================= 2013-05-16 06:55 - 2013-05-16 06:55 - 000051712 _____ (Hewlett-Packard Company) C:\WINDOWS\system32\hpbmiapi.dll 2013-05-16 06:55 - 2013-05-16 06:55 - 000052736 _____ (Hewlett-Packard Company) C:\WINDOWS\system32\hpboid.dll 2013-05-16 06:56 - 2013-05-16 06:56 - 000012800 _____ (Hewlett-Packard Company) C:\WINDOWS\system32\hpboidps.dll 2013-05-16 06:56 - 2013-05-16 06:56 - 000078848 _____ (Hewlett-Packard Company) C:\WINDOWS\system32\hpbpro.dll 2013-05-16 06:55 - 2013-05-16 06:55 - 000013312 _____ (Hewlett-Packard Company) C:\WINDOWS\system32\hpbprops.dll 2010-01-19 15:12 - 2010-01-19 15:12 - 000070144 _____ (Hewlett-Packard) C:\WINDOWS\system32\HPBWSDR.DLL 2010-05-06 15:18 - 2010-05-06 15:18 - 000180736 _____ (hp) C:\WINDOWS\system32\hplbddrv.dll 2013-05-16 06:52 - 2013-05-16 06:52 - 000067072 _____ (Hewlett-Packard) C:\WINDOWS\system32\HPZidr12.dll 2013-05-16 06:52 - 2013-05-16 06:52 - 000050688 _____ (Hewlett-Packard) C:\WINDOWS\system32\HPZinw12.dll 2013-05-16 06:52 - 2013-05-16 06:52 - 000066048 _____ (Hewlett-Packard) C:\WINDOWS\system32\HPZipm12.dll 2013-05-16 06:52 - 2013-05-16 06:52 - 000046592 _____ (Hewlett-Packard) C:\WINDOWS\system32\HPZipr12.dll 2013-05-16 06:52 - 2013-05-16 06:52 - 000038400 _____ (Hewlett-Packard) C:\WINDOWS\system32\hpzipt12.dll 2013-05-16 06:52 - 2013-05-16 06:52 - 000024064 _____ (Hewlett-Packard) C:\WINDOWS\system32\hpzisn12.dll 2012-09-28 21:45 - 2012-09-28 21:45 - 000246272 _____ C:\WINDOWS\system32\rtvcvfw64.dll 2015-03-17 01:34 - 2015-03-17 01:34 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\atl71.dll 2013-05-16 06:51 - 2013-05-16 06:51 - 000054784 _____ (Hewlett-Packard) C:\WINDOWS\SysWOW64\HPZidr12.dll 2013-05-16 06:51 - 2013-05-16 06:51 - 000039424 _____ (Hewlett-Packard) C:\WINDOWS\SysWOW64\HPZipr12.dll 2015-03-17 01:34 - 2015-03-17 01:34 - 001060864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc71.dll 2015-03-17 01:34 - 2015-03-17 01:34 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71CHS.DLL 2015-03-17 01:34 - 2015-03-17 01:34 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71CHT.DLL 2015-03-17 01:34 - 2015-03-17 01:34 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71DEU.DLL 2015-03-17 01:34 - 2015-03-17 01:34 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71ENU.DLL 2015-03-17 01:34 - 2015-03-17 01:34 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71ESP.DLL 2015-03-17 01:34 - 2015-03-17 01:34 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71FRA.DLL 2015-03-17 01:34 - 2015-03-17 01:34 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71ITA.DLL 2015-03-17 01:34 - 2015-03-17 01:34 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71JPN.DLL 2015-03-17 01:34 - 2015-03-17 01:34 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71KOR.DLL 2015-03-17 01:34 - 2015-03-17 01:34 - 001047552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc71u.dll 2015-03-17 01:34 - 2015-03-17 01:34 - 000499712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp71.dll 2015-03-17 01:34 - 2015-03-17 01:34 - 000348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr71.dll 2012-09-28 21:45 - 2012-09-28 21:45 - 000247296 _____ C:\WINDOWS\SysWOW64\rtvcvfw32.dll 2021-04-03 15:17 - 2021-04-03 15:17 - 002298368 _____ (Farbar) C:\Users\benoi\Downloads\FRST64.exe 2021-04-03 15:04 - 2021-04-03 15:04 - 003467416 _____ (Nicolas Coolman) C:\Users\benoi\Downloads\ZHPSuite.exe ==================== SigCheck ============================ (There is no automatic fix for files that do not pass verification.) ==================== BCD ================================ Firmware Boot Manager --------------------- identifier {fwbootmgr} displayorder {bootmgr} {c7de2efb-ee76-11ea-8426-806e6f6e6963} {00e0336e-a95c-11ea-8409-806e6f6e6963} timeout 1 Windows Boot Manager -------------------- identifier {bootmgr} device partition=\Device\HarddiskVolume3 path \EFI\MICROSOFT\BOOT\BOOTMGFW.EFI description Windows Boot Manager locale fr-FR inherit {globalsettings} default {current} resumeobject {38abfd17-63d1-11eb-a11d-d69809824ab2} displayorder {current} toolsdisplayorder {memdiag} timeout 0 Firmware Application (101fffff) ------------------------------- identifier {00e0336e-a95c-11ea-8409-806e6f6e6963} description Hard Drive Firmware Application (101fffff) ------------------------------- identifier {c7de2efb-ee76-11ea-8426-806e6f6e6963} device partition=\Device\HarddiskVolume6 path \EFI\SYSTEMD\SYSTEMD-BOOTX64.EFI description Pop!_OS 20.04 LTS Windows Boot Loader ------------------- identifier {current} device partition=C: path \WINDOWS\system32\winload.efi description Windows 10 locale fr-FR inherit {bootloadersettings} recoverysequence {38abfd19-63d1-11eb-a11d-d69809824ab2} volumebandid 1 displaymessageoverride Recovery recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 osdevice partition=C: systemroot \WINDOWS resumeobject {38abfd17-63d1-11eb-a11d-d69809824ab2} nx OptIn bootmenupolicy Standard Windows Boot Loader ------------------- identifier {38abfd19-63d1-11eb-a11d-d69809824ab2} device ramdisk=[\Device\HarddiskVolume2]\Recovery\WindowsRE\Winre.wim,{38abfd1a-63d1-11eb-a11d-d69809824ab2} path \windows\system32\winload.efi description Windows Recovery Environment locale fr-FR inherit {bootloadersettings} displaymessage Recovery osdevice ramdisk=[\Device\HarddiskVolume2]\Recovery\WindowsRE\Winre.wim,{38abfd1a-63d1-11eb-a11d-d69809824ab2} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Windows Boot Loader ------------------- identifier {cfb4af21-a963-11ea-9408-f377c81e33de} device ramdisk=[\Device\HarddiskVolume4]\Recovery\WindowsRE\Winre.wim,{cfb4af22-a963-11ea-9408-f377c81e33de} path \windows\system32\winload.efi description Windows Recovery Environment locale fr-FR inherit {bootloadersettings} displaymessage Recovery osdevice ramdisk=[\Device\HarddiskVolume4]\Recovery\WindowsRE\Winre.wim,{cfb4af22-a963-11ea-9408-f377c81e33de} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Resume from Hibernate --------------------- identifier {38abfd17-63d1-11eb-a11d-d69809824ab2} device partition=C: path \WINDOWS\system32\winresume.efi description Windows Resume Application locale fr-FR inherit {resumeloadersettings} recoverysequence {38abfd19-63d1-11eb-a11d-d69809824ab2} recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 filedevice partition=C: filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Windows Memory Tester --------------------- identifier {memdiag} device partition=\Device\HarddiskVolume3 path \EFI\Microsoft\Boot\memtest.efi description Diagnostics m‚moire Windows locale fr-FR inherit {globalsettings} badmemoryaccess Yes EMS Settings ------------ identifier {emssettings} bootems No Debugger Settings ----------------- identifier {dbgsettings} debugtype Local RAM Defects ----------- identifier {badmemory} Global Settings --------------- identifier {globalsettings} inherit {dbgsettings} {emssettings} {badmemory} integrityservices Enable Boot Loader Settings -------------------- identifier {bootloadersettings} inherit {globalsettings} {hypervisorsettings} Hypervisor Settings ------------------- identifier {hypervisorsettings} hypervisordebugtype Serial hypervisordebugport 1 hypervisorbaudrate 115200 Resume Loader Settings ---------------------- identifier {resumeloadersettings} inherit {globalsettings} Device options -------------- identifier {38abfd1a-63d1-11eb-a11d-d69809824ab2} description Windows Recovery ramdisksdidevice partition=\Device\HarddiskVolume2 ramdisksdipath \Recovery\WindowsRE\boot.sdi Device options -------------- identifier {cfb4af22-a963-11ea-9408-f377c81e33de} description Windows Recovery ramdisksdidevice partition=\Device\HarddiskVolume4 ramdisksdipath \Recovery\WindowsRE\boot.sdi ==================== End of FRST.txt ========================